CVE-2008-1619: Medium severity xen vulnerability
Published Mar 17, 2008
·Updated
The ssmi emulation in Xen 5.1 on IA64 architectures allows attackers to cause a denial of service (dom0 panic) via certain traffic, as demonstrated using an FTP stress test tool.
Affected Software
1 affected component
Xensource Inc Xen=5.1
Remediation
Patch Available
Event History
Mar 17, 2008
Data Sourced
11:30 AM
DescriptionSeverityAffected Software
Apr 2, 2008
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-1619?
CVE-2008-1619 is classified as a high severity vulnerability due to its potential to cause denial of service.
2
How does CVE-2008-1619 affect systems?
CVE-2008-1619 allows attackers to induce a denial of service by causing the dom0 (domain zero) to panic through specific traffic patterns.
3
What versions of Xen are affected by CVE-2008-1619?
CVE-2008-1619 specifically affects Xen version 5.1 on IA64 architectures.
4
Is there a known exploit for CVE-2008-1619?
Yes, the vulnerability can be exploited using tools like an FTP stress test tool to trigger the denial of service.
5
How can I mitigate CVE-2008-1619?
To mitigate CVE-2008-1619, it is recommended to upgrade to a patched version of Xen or implement network traffic controls.