CVE-2009-1758: Medium severity Linux Linux kernel vulnerability
The hypervisorcallback function in Xen, possibly before 3.4.0, as applied to the Linux kernel 2.6.30-rc4, 2.6.18, and probably other versions allows guest user applications to cause a denial of service (kernel oops) of the guest OS by triggering a segmentation fault in "certain address ranges."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1758?
CVE-2009-1758 has a medium severity as it allows guest user applications to cause a denial of service to the guest operating system.
How do I fix CVE-2009-1758?
To mitigate CVE-2009-1758, upgrade to a version of Xen that is higher than 3.3.1 and ensure the Linux kernel is updated to a version that does not contain this vulnerability.
Which versions of Xen are affected by CVE-2009-1758?
CVE-2009-1758 affects versions of Xen up to and including 3.3.1.
Can CVE-2009-1758 affect my Linux kernel?
Yes, CVE-2009-1758 can affect the Linux kernel versions 2.6.18 and 2.6.30-rc4, among others.
What kind of attack can exploit CVE-2009-1758?
CVE-2009-1758 can be exploited by triggering a segmentation fault in certain address ranges, causing the guest OS to crash.