CVE Vulnerabilities

CVE-2011-1898

Published: Aug 12, 2011 | Modified: Oct 26, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.4 HIGH
AV:A/AC:M/Au:S/C:C/I:C/A:C
RedHat/V2
7.4 IMPORTANT
AV:A/AC:M/Au:S/C:C/I:C/A:C
RedHat/V3
Ubuntu
MEDIUM

Xen 4.1 before 4.1.1 and 4.0 before 4.0.2, when using PCI passthrough on Intel VT-d chipsets that do not have interrupt remapping, allows guest OS users to gain host OS privileges by using DMA to generate MSI interrupts by writing to the interrupt injection registers.

Affected Software

Name Vendor Start Version End Version
Xen Citrix 4.0.0 (including) 4.0.0 (including)
Xen Citrix 4.0.1 (including) 4.0.1 (including)
Xen Citrix 4.1.0 (including) 4.1.0 (including)
Red Hat Enterprise Linux 5 RedHat kernel-0:2.6.18-274.12.1.el5 *
Red Hat Enterprise Linux 5.6 EUS - Server Only RedHat kernel-0:2.6.18-238.35.1.el5 *
Red Hat Enterprise Linux 6 RedHat kernel-0:2.6.32-131.12.1.el6 *
Xen Ubuntu upstream *
Xen-3.2 Ubuntu hardy *

References