Bug 1903746 - xen: allowing x86 HVM guest OS users to cause a denial of service
Summary: xen: allowing x86 HVM guest OS users to cause a denial of service
Keywords:
Status: CLOSED DUPLICATE of bug 1902766
Alias: None
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On: 1902769 1903748
Blocks:
TreeView+ depends on / blocked
 
Reported: 2020-12-02 17:58 UTC by Dhananjay Arunesh
Modified: 2020-12-03 19:45 UTC (History)
26 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed: 2020-12-03 08:41:30 UTC
Embargoed:


Attachments (Terms of Use)

Description Dhananjay Arunesh 2020-12-02 17:58:40 UTC
An issue was discovered in Xen through 4.14.x allowing x86 HVM guest OS users to cause a denial of service (stack corruption), cause a data leak, or possibly gain privileges because of an off-by-one error. NOTE: this issue is caused by an incorrect fix for CVE-2020-27671.

References:
https://xenbits.xen.org/xsa/advisory-355.html

Comment 1 Dhananjay Arunesh 2020-12-02 17:59:24 UTC
Created xen tracking bugs for this issue:

Affects: fedora-all [bug 1903748]

Comment 2 Mauro Matteo Cascella 2020-12-03 08:41:30 UTC

*** This bug has been marked as a duplicate of bug 1902766 ***


Note You need to log in before you can comment on or make changes to this bug.