Vulnerability Name: | CVE-2011-2901 (CCN-69487) | ||||||||||||||||||||||||||||
Assigned: | 2011-08-30 | ||||||||||||||||||||||||||||
Published: | 2011-08-30 | ||||||||||||||||||||||||||||
Updated: | 2023-02-13 | ||||||||||||||||||||||||||||
Summary: | Off-by-one error in the __addr_ok macro in Xen 3.3 and earlier allows local 64 bit PV guest administrators to cause a denial of service (host crash) via unspecified hypercalls that ignore virtual-address bits. | ||||||||||||||||||||||||||||
CVSS v3 Severity: | 4.0 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||||||||||||||||||||||
CVSS v2 Severity: | 5.5 Medium (CVSS v2 Vector: AV:A/AC:L/Au:S/C:N/I:N/A:C) 3.9 Low (Temporal CVSS v2 Vector: AV:A/AC:L/Au:S/C:N/I:N/A:C/E:U/RL:OF/RC:UR)
1.5 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:UR)
3.9 Low (REDHAT Temporal CVSS v2 Vector: AV:A/AC:L/Au:S/C:N/I:N/A:C/E:U/RL:OF/RC:UR)
| ||||||||||||||||||||||||||||
Vulnerability Type: | CWE-193 | ||||||||||||||||||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2011-2901 Source: CCN Type: Xen XSA-4 Xen Source: CCN Type: RHSA-2011-1212 Important: kernel security and bug fix update Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: CCN Type: RHSA-2011-1813 Important: kernel security and bug fix update Source: CCN Type: SA45835 Xen "__addr_ok()" Macro Input Validation Weakness Source: CCN Type: SA45880 Citrix XenServer Multiple Vulnerabilities Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: CCN Type: CTX130325 Citrix XenServer Multiple Security Updates Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: CCN Type: OSVDB ID: 74873 Xen x86_64__addr_ok() Macro Off-by-one Unprivileged Local Host DoS Source: CCN Type: OSVDB ID: 75168 Xen xen/include/asm-x86/x86_64/uaccess.h __addr_ok() Macro Input Validation Local DoS Source: CCN Type: BID-49370 Xen 'x86_64 __addr_ok()' Local Denial Of Service Vulnerability Source: CCN Type: Red Hat Bugzilla Bug 728042 CVE-2011-2901 kernel: xen: off-by-one shift in x86_64 __addr_ok() Source: secalert@redhat.com Type: UNKNOWN secalert@redhat.com Source: XF Type: UNKNOWN xen-x8664addrok-dos(69487) | ||||||||||||||||||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||
BACK |