Lucene search

K
freebsdFreeBSDC0E76D33-8821-11E5-AB94-002590263BF5
HistoryOct 29, 2015 - 12:00 a.m.

xen-tools -- populate-on-demand balloon size inaccuracy can crash guests

2015-10-2900:00:00
vuxml.freebsd.org
17

2.1 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

0.001 Low

EPSS

Percentile

26.7%

The Xen Project reports:

Guests configured with PoD might be unstable, especially under
load. In an affected guest, an unprivileged guest user might be
able to cause a guest crash, perhaps simply by applying load so
as to cause heavy memory pressure within the guest.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchxen-tools= 3.4UNKNOWN
FreeBSDanynoarchxen-tools< 4.5.1_2UNKNOWN

2.1 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:N/I:N/A:P

0.001 Low

EPSS

Percentile

26.7%