CVE-2013-0190

The xen_failsafe_callback function in Xen for the Linux kernel 2.6.23 and other versions, when running a 32-bit PVOPS guest, allows local users to cause a denial of service (guest crash) by triggering an iret fault, leading to use of an incorrect stack pointer and stack corruption.
Configurations

Configuration 1 (hide)

cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*

History

21 Nov 2024, 01:47

Type Values Removed Values Added
References () http://rhn.redhat.com/errata/RHSA-2013-0496.html - () http://rhn.redhat.com/errata/RHSA-2013-0496.html -
References () http://www.openwall.com/lists/oss-security/2013/01/16/6 - () http://www.openwall.com/lists/oss-security/2013/01/16/6 -
References () http://www.openwall.com/lists/oss-security/2013/01/16/8 - () http://www.openwall.com/lists/oss-security/2013/01/16/8 -
References () http://www.securityfocus.com/bid/57433 - () http://www.securityfocus.com/bid/57433 -
References () http://www.ubuntu.com/usn/USN-1725-1 - () http://www.ubuntu.com/usn/USN-1725-1 -
References () http://www.ubuntu.com/usn/USN-1728-1 - () http://www.ubuntu.com/usn/USN-1728-1 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=896038 - () https://bugzilla.redhat.com/show_bug.cgi?id=896038 -

Information

Published : 2013-02-13 01:55

Updated : 2025-04-11 00:51


NVD link : CVE-2013-0190

Mitre link : CVE-2013-0190

CVE.ORG link : CVE-2013-0190


JSON object : View

Products Affected

linux

  • linux_kernel
CWE
CWE-20

Improper Input Validation