Lucene search

K
cve[email protected]CVE-2013-1919
HistoryMay 13, 2013 - 11:55 p.m.

CVE-2013-1919

2013-05-1323:55:01
CWE-264
web.nvd.nist.gov
43
cve-2013-1919
xen
denial of service
irqs
pci devices

4.7 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:N/A:C

4.1 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.7%

Xen 4.2.x and 4.1.x does not properly restrict access to IRQs, which allows local stub domain clients to gain access to IRQs and cause a denial of service via vectors related to “passed-through IRQs or PCI devices.”

Affected configurations

NVD
Node
xenxenMatch4.1.0
OR
xenxenMatch4.1.1
OR
xenxenMatch4.1.2
OR
xenxenMatch4.1.3
OR
xenxenMatch4.1.4
OR
xenxenMatch4.1.5
Node
xenxenMatch4.2.0
OR
xenxenMatch4.2.1
OR
xenxenMatch4.2.2

4.7 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:N/A:C

4.1 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.7%