CVE

Id
64318  
CVE No.
CVE-2013-4371  
Status
Candidate  
Description
Use-after-free vulnerability in the libxl_list_cpupool function in the libxl toolstack library in Xen 4.2.x and 4.3.x, when running "under memory pressure," returns the original pointer when the realloc function fails, which allows local users to cause a denial of service (heap corruption and crash) and possibly execute arbitrary code via unspecified vectors.  
Phase
Assigned (20130612)  
Votes
None (candidate not yet proposed)  
Comments