X
en 4.2.x, 4.1.x, and earlier, when the hypervisor is running "under memory pressure" and the Xen Security Module (XSM) is enabled, uses the wrong ordering of operations when extending the per-domain event channel tracking table, which causes a use-after-free and allows local guest kernels to inject arbitrary events and gain privileges via unspecified vectors.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:50
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00015.html - | |
| References | () http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00021.html - | |
| References | () http://lists.opensuse.org/opensuse-security-announce/2014-04/msg00000.html - | |
| References | () http://lists.opensuse.org/opensuse-updates/2013-06/msg00049.html - | |
| References | () http://lists.xen.org/archives/html/xen-announce/2013-04/msg00000.html - Patch, Vendor Advisory | |
| References | () http://osvdb.org/92050 - | |
| References | () http://secunia.com/advisories/52857 - Vendor Advisory | |
| References | () http://secunia.com/advisories/55082 - | |
| References | () http://security.gentoo.org/glsa/glsa-201309-24.xml - | |
| References | () http://www.openwall.com/lists/oss-security/2013/04/04/7 - | |
| References | () http://www.securityfocus.com/bid/58880 - | |
| References | () http://www.securitytracker.com/id/1028388 - | |
| References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/83226 - |
Information
Published : 2013-04-12 22:55
Updated : 2025-04-11 00:51
NVD link : CVE-2013-1920
Mitre link : CVE-2013-1920
CVE.ORG link : CVE-2013-1920
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls