CVE Vulnerabilities

CVE-2007-6416

Published: Dec 17, 2007 | Modified: Sep 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
NEGLIGIBLE

The copy_to_user function in the PAL emulation functionality for Xen 3.1.2 and earlier, when running on ia64 systems, allows HVM guest users to access arbitrary physical memory by triggering certain mapping operations.

Affected Software

Name Vendor Start Version End Version
Xen Xen 3.1.2 (including) 3.1.2 (including)
Red Hat Enterprise Linux 5 RedHat kernel-0:2.6.18-53.1.6.el5 *
Xen Ubuntu dapper *
Xen Ubuntu edgy *
Xen-3.0 Ubuntu edgy *
Xen-3.0 Ubuntu feisty *
Xen-3.1 Ubuntu gutsy *
Xen-3.1 Ubuntu hardy *
Xen-3.1 Ubuntu intrepid *

References