Xen 4.2.x and 4.3.x, when using Intel VT-d for PCI passthrough, does not properly flush the TLB after clearing a present translation table entry, which allows local guest administrators to cause a denial of service or gain privileges via unspecified vectors related to an "inverted boolean parameter."
2013-11-23T11:55:04.803
2025-04-11T00:51:21.963
Deferred
CVSSv2: 7.9 (HIGH)
AV:A/AC:M/Au:N/C:C/I:C/A:C
5.5
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | xen | xen | 4.2.1 | Yes |
Operating System | xen | xen | 4.2.2 | Yes |
Operating System | xen | xen | 4.2.3 | Yes |
Operating System | xen | xen | 4.3.0 | Yes |
Operating System | xen | xen | 4.3.1 | Yes |
Operating System | opensuse | opensuse | 13.1 | Yes |