CVE-2011-2519

Advisory lineage Upstream: 0 Downstream: 2
Modified
Published: 27 Dec 2013, 01:00
Last modified:06 Aug 2024, 23:00

Vulnerability Summary

Overall Risk (default)
low
22/100
CVSS Score
5.5 MEDIUM
v2.0 (nvd)
EPSS Score
0.14% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

27 Dec 2013, 01:00
Published
Vulnerability first disclosed
06 Aug 2024, 23:00
Last Modified
Vulnerability information updated

Description

Xen in the Linux kernel, when running a guest on a host without hardware assisted paging (HAP), allows guest users to cause a denial of service (invalid pointer dereference and hypervisor crash) via the SAHF instruction.

CVSS Metrics

  • v2.0MEDIUMScore: 5.5AV:A/AC:L/Au:S/C:N/I:N/A:C

EPSS Trends

Current EPSS score: 0.14% Percentile: 33%

Techniques & Countermeasures

  • CWE-476NULL Pointer Dereference

    The product dereferences a pointer that it expects to be valid but is NULL.

Affected Systems

  • redhatenterprise_linux_desktop

    5.0

  • redhatenterprise_linux_server

    5.0

  • redhatenterprise_linux_workstation

    5.0

  • xenxen

    < 3.3.0

References (4)