Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-1898
HistoryAug 12, 2011 - 12:00 a.m.

CVE-2011-1898

2011-08-1200:00:00
ubuntu.com
ubuntu.com
12

7.4 High

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:A/AC:M/Au:S/C:C/I:C/A:C

0.001 Low

EPSS

Percentile

29.5%

Xen 4.1 before 4.1.1 and 4.0 before 4.0.2, when using PCI passthrough on
Intel VT-d chipsets that do not have interrupt remapping, allows guest OS
users to gain host OS privileges by “using DMA to generate MSI interrupts
by writing to the interrupt injection registers.”

Notes

Author Note
kees for full-virtualization issues, add qemu (and kvm)
mdeslaur 3.x probably not affected, marking as such

7.4 High

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:A/AC:M/Au:S/C:C/I:C/A:C

0.001 Low

EPSS

Percentile

29.5%