CVE-2013-0231: Buffer Overflow
Last updated 24 July 2024
Other sources
The pcibackenablemsi function in the PCI backend driver (drivers/xen/pciback/confspacecapabilitymsi.c) in Xen for the Linux kernel 2.6.18 and 3.8 allows guest OS users with PCI device access to cause a denial of service via a large number of kernel log messages. NOTE: some of these details are obtained from third party information.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2013-0231?
CVE-2013-0231 is classified as a denial of service vulnerability which can significantly impact the performance and accessibility of the affected system.
How do I fix CVE-2013-0231?
To resolve CVE-2013-0231, upgrade to a patched version of the Linux kernel or Xen hypervisor as specified by your distribution's security updates.
Which versions of the Linux kernel are affected by CVE-2013-0231?
CVE-2013-0231 affects Linux kernel versions 2.6.18 and 3.8.
Which versions of Xen are impacted by CVE-2013-0231?
CVE-2013-0231 affects specific Xen versions including 3.0.2 through 3.2.3.
What is the cause of the denial of service in CVE-2013-0231?
The denial of service in CVE-2013-0231 is caused by the pciback_enable_msi function in the PCI backend driver which allows excessive kernel log messages from guest OS users.