Red Hat Xen Hypervisor Implementation Local Guest Denial Of Service Vulnerability
BID:48058
Info
Red Hat Xen Hypervisor Implementation Local Guest Denial Of Service Vulnerability
| Bugtraq ID: | 48058 |
| Class: | Design Error |
| CVE: |
CVE-2011-1166 |
| Remote: | No |
| Local: | Yes |
| Published: | May 31 2011 12:00AM |
| Updated: | Mar 19 2015 08:10AM |
| Credit: | Eugene Teo |
| Vulnerable: |
XenSource Xen 0 VMWare ESX 4.1 VMWare ESX 4.0 SuSE SUSE Linux Enterprise Server 10 SP3 SuSE SUSE Linux Enterprise SDK 10 SP3 Redhat Enterprise Linux Desktop 5 client Redhat Enterprise Linux 5 Server Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 Avaya Voice Portal 5.1 SP1 Avaya Voice Portal 5.1 Avaya Voice Portal 5.1 Avaya Voice Portal 5.0 SP2 Avaya Voice Portal 5.0 SP1 Avaya Voice Portal 5.0 Avaya IQ 5.2 Avaya IQ 5.1 Avaya IQ 5 Avaya IP Office Application Server 7.0 Avaya IP Office Application Server 6.1 Avaya Communication Server 1000M Signaling Server 7.5 Avaya Communication Server 1000M Signaling Server 7.0 Avaya Communication Server 1000M Signaling Server 6.0 Avaya Communication Server 1000M 7.5 Avaya Communication Server 1000M 7.0 Avaya Communication Server 1000M 6.0 Avaya Communication Server 1000E Signaling Server 7.5 Avaya Communication Server 1000E Signaling Server 7.0 Avaya Communication Server 1000E Signaling Server 6.0 Avaya Communication Server 1000E 7.5 Avaya Communication Server 1000E 7.0 Avaya Communication Server 1000E 6.0 Avaya Aura System Platform 6.0.2 Avaya Aura System Platform 6.0.1 Avaya Aura System Platform 6.0 SP3 Avaya Aura System Platform 6.0 SP2 Avaya Aura System Platform 6.0 Avaya Aura System Platform 1.0 Avaya Aura System Manager 6.1.1 Avaya Aura System Manager 6.1 SP2 Avaya Aura System Manager 6.1 Sp1 Avaya Aura System Manager 6.1 Avaya Aura System Manager 6.0 SP1 Avaya Aura System Manager 6.0 Avaya Aura System Manager 5.2 Avaya Aura Session Manager 6.1 SP2 Avaya Aura Session Manager 6.1 Sp1 Avaya Aura Session Manager 6.1 Avaya Aura Session Manager 6.0 SP1 Avaya Aura Session Manager 6.0 Avaya Aura Session Manager 5.2 SP2 Avaya Aura Session Manager 5.2 SP1 Avaya Aura Session Manager 5.2 Avaya Aura Session Manager 1.1 Avaya Aura Presence Services 6.1 Avaya Aura Presence Services 6.0 Avaya Aura Conferencing 6.0 Standard Avaya Aura Communication Manager Utility Services 6.1 Avaya Aura Communication Manager Utility Services 6.0 Avaya Aura Communication Manager 6.0.1 Avaya Aura Communication Manager 6.0 Avaya Aura Communication Manager 5.2 Avaya Aura Application Server 5300 SIP Core 2.0 Avaya Aura Application Enablement Services 5.2.1 Avaya Aura Application Enablement Services 6.1 Avaya Aura Application Enablement Services 5.2.3 Avaya Aura Application Enablement Services 5.2.2 Avaya Aura Application Enablement Services 5.2 |
| Not Vulnerable: | |
Discussion
Red Hat Xen Hypervisor Implementation Local Guest Denial Of Service Vulnerability
The implementation of Xen Hypervisor included in Red Hat Linux is prone to a denial-of-service vulnerability.
A privileged guest user can exploit this issue to cause the host and the guest to lock up, denying service to legitimate users.
The implementation of Xen Hypervisor included in Red Hat Linux is prone to a denial-of-service vulnerability.
A privileged guest user can exploit this issue to cause the host and the guest to lock up, denying service to legitimate users.
Exploit / POC
Red Hat Xen Hypervisor Implementation Local Guest Denial Of Service Vulnerability
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Red Hat Xen Hypervisor Implementation Local Guest Denial Of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Red Hat Xen Hypervisor Implementation Local Guest Denial Of Service Vulnerability
References:
References:
- Red Hat Homepage (Red Hat)
- VMSA-2012-0001 (VMWare)
- ASA-2011-208 kernel security and bug fix update (RHSA-2011-0833) (Avaya)