Vulnerabilities > Citrix > XEN

DATE CVE VULNERABILITY TITLE RISK
2011-08-19 CVE-2011-3262 Resource Management Errors vulnerability in Citrix XEN
tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allows local users to cause a denial of service (management software infinite loop and management domain resource consumption) via unspecified vectors related to "Lack of error checking in the decompression loop."
local
low complexity
citrix CWE-399
2.1
2011-08-12 CVE-2011-1898 Permissions, Privileges, and Access Controls vulnerability in Citrix XEN 4.0.0/4.0.1/4.1.0
Xen 4.1 before 4.1.1 and 4.0 before 4.0.2, when using PCI passthrough on Intel VT-d chipsets that do not have interrupt remapping, allows guest OS users to gain host OS privileges by "using DMA to generate MSI interrupts by writing to the interrupt injection registers."
7.4
2011-08-12 CVE-2011-1583 Numeric Errors vulnerability in Citrix XEN
Multiple integer overflows in tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allow local users to cause a denial of service and possibly execute arbitrary code via a crafted paravirtualised guest kernel image that triggers (1) a buffer overflow during a decompression loop or (2) an out-of-bounds read in the loader involving unspecified length fields.
local
citrix CWE-189
6.9
2011-01-25 CVE-2010-4255 Unspecified vulnerability in Citrix XEN
The fixup_page_fault function in arch/x86/traps.c in Xen 4.0.1 and earlier on 64-bit platforms, when paravirtualization is enabled, does not verify that kernel mode is used to call the handle_gdt_ldt_mapping_fault function, which allows guest OS users to cause a denial of service (host OS BUG_ON) via a crafted memory access.
low complexity
citrix
6.1
2010-12-08 CVE-2010-3699 Resource Management Errors vulnerability in Citrix XEN
The backend driver in Xen 3.x allows guest OS users to cause a denial of service via a kernel thread leak, which prevents the device and guest OS from being shut down or create a zombie domain, causes a hang in zenwatch, or prevents unspecified xm commands from working properly, related to (1) netback, (2) blkback, or (3) blktap.
low complexity
citrix CWE-399
2.7
2008-12-24 CVE-2008-5716 Permissions, Privileges, and Access Controls vulnerability in Citrix XEN 3.3.0
xend in Xen 3.3.0 does not properly restrict a guest VM's write access within the /local/domain xenstore directory tree, which allows guest OS users to cause a denial of service and possibly have unspecified other impact by writing to (1) console/tty, (2) console/limit, or (3) image/device-model-pid.
local
low complexity
citrix CWE-264
7.2
2008-10-03 CVE-2008-4405 Permissions, Privileges, and Access Controls vulnerability in Citrix XEN 3.0.3
xend in Xen 3.0.3 does not properly limit the contents of the /local/domain xenstore directory tree, and does not properly restrict a guest VM's write access within this tree, which allows guest OS users to cause a denial of service and possibly have unspecified other impact by writing to (1) console/tty, (2) console/limit, or (3) image/device-model-pid.
local
low complexity
citrix CWE-264
7.2