CVE Vulnerabilities

CVE-2007-6416

Published: Dec 17, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
NEGLIGIBLE
root.io logo minimus.io logo echo.ai logo

The copy_to_user function in the PAL emulation functionality for Xen 3.1.2 and earlier, when running on ia64 systems, allows HVM guest users to access arbitrary physical memory by triggering certain mapping operations.

Affected Software

NameVendorStart VersionEnd Version
XenXen3.1.2 (including)3.1.2 (including)
Red Hat Enterprise Linux 5RedHatkernel-0:2.6.18-53.1.6.el5*
XenUbuntudapper*
XenUbuntuedgy*
Xen-3.0Ubuntuedgy*
Xen-3.0Ubuntufeisty*
Xen-3.1Ubuntugutsy*
Xen-3.1Ubuntuhardy*
Xen-3.1Ubuntuintrepid*

References