CVE-2007-5907: Medium severity Xensource Inc Xen vulnerability
Published Nov 9, 2007
·Updated
Xen 3.1.1 does not prevent modification of the CR4 TSC from applications, which allows pv guests to cause a denial of service (crash).
Affected Software
1 affected component
Xensource Inc Xen=3.1.1
Event History
Nov 9, 2007
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-5907?
CVE-2007-5907 has been rated as a high severity vulnerability due to its potential to cause denial of service.
2
How do I fix CVE-2007-5907?
To mitigate CVE-2007-5907, it is recommended to upgrade to a version of Xen that has addressed this issue.
3
What specific vulnerability does CVE-2007-5907 exploit?
CVE-2007-5907 exploits the inability of Xen 3.1.1 to prevent modification of the CR4 TSC by applications.
4
What could happen if CVE-2007-5907 is exploited?
If exploited, CVE-2007-5907 allows paravirtualized (pv) guests to cause a denial of service by crashing the system.
5
Which version of Xen is affected by CVE-2007-5907?
CVE-2007-5907 specifically affects Xen version 3.1.1.