5.2
CVSSv2

CVE-2013-4494

Published: 02/11/2013 Updated: 13/12/2018
CVSS v2 Base Score: 5.2 | Impact Score: 6.9 | Exploitability Score: 4.4
VMScore: 463
Vector: AV:A/AC:M/Au:S/C:N/I:N/A:C

Vulnerability Summary

Xen prior to 4.1.x, 4.2.x, and 4.3.x does not take the page_alloc_lock and grant_table.lock in the same order, which allows local guest administrators with access to multiple vcpus to cause a denial of service (host deadlock) via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

xen xen

debian debian linux 7.0

Vendor Advisories

Synopsis Moderate: kernel security and bug fix update Type/Severity Security Advisory: Moderate Topic Updated kernel packages that fix one security issue and three bugs are nowavailable for Red Hat Enterprise Linux 5The Red Hat Security Response Team has rated this update as having moderatesecurity impact ...
Multiple security issues have been discovered in the Xen virtualisation solution which may result in information leaks or denial of service For the stable distribution (wheezy), these problems have been fixed in version 414-3+deb7u2 For the unstable distribution (sid), these problems will be fixed soon We recommend that you upgrade your xen pa ...