CVE List

Id CVE No. Status Description Phase Votes Comments Actions
64302  CVE-2013-4355  Candidate  Xen 4.3.x and earlier does not properly handle certain errors, which allows local HVM guests to obtain hypervisor stack memory via a (1) port or (2) memory mapped I/O write or (3) other unspecified operations related to addresses without associated memory.  Assigned (20130612)  None (candidate not yet proposed)    View
61867  CVE-2013-1920  Candidate  Xen 4.2.x, 4.1.x, and earlier, when the hypervisor is running "under memory pressure" and the Xen Security Module (XSM) is enabled, uses the wrong ordering of operations when extending the per-domain event channel tracking table, which causes a use-after-free and allows local guest kernels to inject arbitrary events and gain privileges via unspecified vectors.  Assigned (20130219)  None (candidate not yet proposed)    View
58877  CVE-2012-5634  Candidate  Xen 4.2.x, 4.1.x, and 4.0, when using Intel VT-d for PCI passthrough, does not properly configure VT-d when supporting a device that is behind a legacy PCI Bridge, which allows local guests to cause a denial of service to other guests by injecting an interrupt.  Assigned (20121024)  None (candidate not yet proposed)    View
80617  CVE-2015-3340  Candidate  Xen 4.2.x through 4.5.x does not initialize certain fields, which allows certain remote service domains to obtain sensitive information from memory via a (1) XEN_DOMCTL_gettscinfo or (2) XEN_SYSCTL_getdomaininfolist request.  Assigned (20150420)  None (candidate not yet proposed)    View
66322  CVE-2013-6375  Candidate  Xen 4.2.x and 4.3.x, when using Intel VT-d for PCI passthrough, does not properly flush the TLB after clearing a present translation table entry, which allows local guest administrators to cause a denial of service or gain privileges via unspecified vectors related to an "inverted boolean parameter."  Assigned (20131104)  None (candidate not yet proposed)    View

Page 103 of 20943, showing 5 records out of 104715 total, starting on record 511, ending on 515

Actions