Xen 'arch/ia64/xen/faults.c' Local Denial Of Service Vulnerability
BID:40776
Info
Xen 'arch/ia64/xen/faults.c' Local Denial Of Service Vulnerability
| Bugtraq ID: | 40776 |
| Class: | Unknown |
| CVE: |
CVE-2010-2070 |
| Remote: | No |
| Local: | Yes |
| Published: | Jun 11 2010 12:00AM |
| Updated: | Jun 24 2013 11:30AM |
| Credit: | Guan Eryu |
| Vulnerable: |
XenSource Xen 3.3.1 XenSource Xen 3.3 XenSource Xen 3.2 XenSource Xen 3.1.2 XenSource Xen 3.1.1 XenSource Xen 3.0.3 XenSource Xen 3.0 VMWare ESX Server 4.1 VMWare ESX Server 4.0 Red Hat Enterprise Linux Desktop 5 client Red Hat Enterprise Linux 5 Server Avaya Voice Portal 5.1 Avaya Voice Portal 5.1 Avaya Voice Portal 5.0 SP2 Avaya Voice Portal 5.0 SP1 Avaya Voice Portal 5.0 Avaya IQ 5.1 Avaya IQ 5 Avaya Aura System Platform 6.0 Avaya Aura System Platform 1.1 Avaya Aura System Manager 6.0 SP1 Avaya Aura System Manager 6.0 Avaya Aura System Manager 5.2 Avaya Aura Session Manager 6.0 Avaya Aura Session Manager 5.2 Avaya Aura Session Manager 1.1 Avaya Aura Presence Services 6.0 Avaya Aura Conferencing 6.0 Standard Avaya Aura Conferencing Standard Avaya Aura Conferencing 6.0 Standard Avaya Aura Conferencing 6.0 Avaya Aura Application Enablement Services 5.2.1 Avaya Aura Application Enablement Services 5.2 |
| Not Vulnerable: |
VMWare ESX Server 4.1 ESX410-201101201 |
Discussion
Xen 'arch/ia64/xen/faults.c' Local Denial Of Service Vulnerability
Xen is prone to a denial-of-service vulnerability because of an error in the 'arch/ia64/xen/faults.c' source code file.
A local attacker can exploit this issue to cause the kernel to crash, resulting in a denial-of-service condition.
Xen is prone to a denial-of-service vulnerability because of an error in the 'arch/ia64/xen/faults.c' source code file.
A local attacker can exploit this issue to cause the kernel to crash, resulting in a denial-of-service condition.
Exploit / POC
Xen 'arch/ia64/xen/faults.c' Local Denial Of Service Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Xen 'arch/ia64/xen/faults.c' Local Denial Of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Xen 'arch/ia64/xen/faults.c' Local Denial Of Service Vulnerability
References:
References:
- [IA64] Make Big-Endian appliation run on top of dom0 and domU (Alex Williamson)
- Bug 586415 �?? CVE-2010-2070 /kernel/security/CVE-2006-0742 test cause kernel-xen (Guan Eryu)
- XenSource Homepage (XenSource)
- ASA-2010-259 kernel security and bug fix update (RHSA-2010-0610 RHSA-2010-0893 R (Avaya)
- ASA-2010-259 kernel security and bug fix update (RHSA-2010-0610) (Avaya)