Total vulnerabilities in the database
Xen before 4.1.x, 4.2.x, and 4.3.x does not take the page_alloc_lock and grant_table.lock in the same order, which allows local guest administrators with access to multiple vcpus to cause a denial of service (host deadlock) via unspecified vectors.
Software | From | Fixed in |
---|---|---|
xen / xen | 4.1.0 | 4.1.6.1.x |
xen / xen | 4.2.0 | 4.2.5.x |
xen / xen | 4.3.0 | 4.3.4.x |
debian / debian_linux | 7.0 | 7.0.x |