Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24545
HistoryApr 10, 2020 - 12:56 a.m.

Arbitrary Code Execution

2020-04-1000:56:38
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

EPSS

0

Percentile

5.2%

xen is vulnerable to arbitrary code execution. It was found that the xc_try_bzip2_decode() and xc_try_lzma_decode() decode routines did not correctly check for a possible buffer size overflow in the decoding loop. As well, several integer overflow flaws and missing error/range checking were found that could lead to an infinite loop. A privileged guest user could use these flaws to crash the guest or, possibly, execute arbitrary code in the privileged management domain.