Back

MEDIUM

xen: use-after-free in xc_cpupool_getinfo() under memory pressure (XSA-88)

Published Feb 14, 2014

Description

Use-after-free vulnerability in the xc_cpupool_getinfo function in Xen 4.1.x through 4.3.x, when using a multithreaded toolstack, does not properly handle a failure by the xc_cpumap_alloc function, which allows local users with access to management functions to cause a denial of service (heap corruption) and possibly gain privileges via unspecified vectors.

Affected products

Remediation

Red Hat statement

Not vulnerable. This issue did not affect the versions of the kernel-xen package as shipped with Red Hat Enterprise Linux 5. This issue did not affect Red Hat Enterprise Linux 6 and Red Hat Enterprise MRG 2 as we did not have support for Xen hypervisor.

Metrics

References (9)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Feb 14, 2014
Updated Aug 6, 2024
Reserved Feb 12, 2014
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Feb 12, 2014