CVE-2013-2194: Integer Overflow
Multiple integer overflows in the Elf parser (libelf) in Xen 4.2.x and earlier allow local guest administrators with certain permissions to have an unspecified impact via a crafted kernel.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-2194?
CVE-2013-2194 is considered a medium severity vulnerability due to the potential impact it can have on local guest administrators.
How do I fix CVE-2013-2194?
To fix CVE-2013-2194, update your Xen installation to version 4.2.3 or later, which resolves the integer overflow issues in the Elf parser.
What are the affected platforms for CVE-2013-2194?
CVE-2013-2194 affects Xen versions 4.2.0 through 4.2.2, including specific releases in that range.
Who can exploit CVE-2013-2194?
CVE-2013-2194 can be exploited by local guest administrators with certain permissions within a vulnerable Xen environment.
What is the impact of exploiting CVE-2013-2194?
Exploiting CVE-2013-2194 can lead to unspecified impacts on the system, potentially allowing for privilege escalation or system instability.