QID 375504
Date Published: 2021-04-29
QID 375504: Citrix XenServer Security Updates(CTX306565)
Citrix XenServer is an open source server virtualization platform based on the Xen hypervisor.
CVE-2021-28038: An attacker with the ability to execute privileged mode code in a guest can perform a denial of service attack against the host.
CVE-2021-28688: An attacker with the ability to execute privileged mode code in a guest can perform a denial of service attack against the host.
Affected Versions:
Citrix XenServer 7.1 LTSR, Citrix XenServer 7.0
Note: This QID will detect only for Citrix XenServer 7.1 LTSR ,Citrix XenServer 7.0
QID Detection Logic (Authenticated):
OS:Citrix XenServer
The QID checks if Hotfixes is applied on the vulnerable versions of Citrix XenServer.
On Successful exploitation could allow privileged code in a guest VM to cause the host to crash or become unresponsive.
Hotfixes have been released for Citrix XenServer to address these issues. Refer to CTX306565 to obtain more information.
- CTX306565 -
support.citrix.com/article/CTX306565
CVEs related to QID 375504
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CTX306565 |
|