CVE-2008-1952
Publication date 23 June 2008
Last updated 24 July 2024
Ubuntu priority
The backend for XenSource Xen Para Virtualized Frame Buffer (PVFB) in Xen ioemu does not properly restrict the frame buffer size, which allows attackers to cause a denial of service (crash) by mapping an arbitrary amount of guest memory.
Status
Package | Ubuntu Release | Status |
---|---|---|
xen | ||
xen-3.0 | ||
xen-3.1 | ||
xen-3.2 | ||
xen-3.3 | ||
Notes
mdeslaur
this completes CVE-2008-1943 first half is xen-pvfb-validate-fb.patch in RHEL5 rhel5 is missing the second half
Patch details
Package | Patch details |
---|---|
xen-3.1 | |
xen-3.2 |