|
|
| |
|
| |
xen: denial of service
| Package(s): | xen |
CVE #(s): | CVE-2011-3346
|
| Created: | October 24, 2011 |
Updated: | October 26, 2011 |
| Description: |
A buffer overflow flaw was found in the Xen hypervisor SCSI subsystem
emulation. An unprivileged, local guest user could provide a large number
of bytes that are used to zero out a fixed-sized buffer via a SAI READ
CAPACITY SCSI command, overwriting memory and causing the guest to crash. |
| Alerts: |
|
( Log in to post comments)
|
|
|