Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The XEN_DOMCTL_getmemlist hypercall in Xen 3.4.x through 4.3.x (possibly 4.3.1) does not always obtain the page_alloc_lock and mm_rwlock in the same order, which allows local guest administrators to cause a denial of service (host deadlock).
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Xen 远程拒绝服务漏洞
Vulnerability Description
Xen 3.4.0至3.4.4版本中的XEN_DOMCTL_getmemlist系统调用中存在安全漏洞,该漏洞源于获取page_alloc_lock和mm_rwlock参数为逆序。本地攻击者可利用该漏洞造成拒绝服务(主机死锁)。
CVSS Information
N/A
Vulnerability Type
N/A