Lucene search

K
ubuntucveUbuntu.comUB:CVE-2013-1918
HistoryMay 13, 2013 - 12:00 a.m.

CVE-2013-1918

2013-05-1300:00:00
ubuntu.com
ubuntu.com
11

7.4 High

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:A/AC:M/Au:S/C:C/I:C/A:C

0.001 Low

EPSS

Percentile

26.7%

Certain page table manipulation operations in Xen 4.1.x, 4.2.x, and earlier
are not preemptible, which allows local PV kernels to cause a denial of
service via vectors related to “deep page table traversal.”

Notes

Author Note
mdeslaur hypervisor packages are in universe. For issues in the hypervisor, add appropriate tags to each section, ex: Tags_xen: universe-binary This is XSA-45
seth-arnold Fix was incomplete / incorrect; see also CVE-2013-1432
OSVersionArchitecturePackageVersionFilename
ubuntu12.04noarchxen< 4.1.2-2ubuntu2.9UNKNOWN
ubuntu12.10noarchxen< 4.1.3-3ubuntu1.6UNKNOWN
ubuntu13.04noarchxen< 4.2.1-0ubuntu3.2UNKNOWN

7.4 High

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:A/AC:M/Au:S/C:C/I:C/A:C

0.001 Low

EPSS

Percentile

26.7%