CVE-2013-4329 - CERT CVE
ID CVE-2013-4329
Sažetak The xenlight library (libxl) in Xen 4.0.x through 4.2.x, when IOMMU is disabled, provides access to a busmastering-capable PCI passthrough device before the IOMMU setup is complete, which allows local HVM guest domains to gain privileges or cause a denial of service via a DMA instruction.
Reference
CVSS
Base: 6.5
Impact: 10.0
Exploitability:2.5
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK HIGH SINGLE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE COMPLETE
CVSS vektor AV:A/AC:H/Au:S/C:C/I:C/A:C
Zadnje važnije ažuriranje 07-01-2017 - 02:59
Objavljeno 12-09-2013 - 18:37