Xen 4.2.x and 4.3.x, when using Intel VT-d for PCI passthrough, does not properly flush the TLB after clearing a present translation table entry, which allows local guest administrators to cause a denial of service or gain privileges via unspecified vectors related to an "inverted boolean parameter."
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://security.gentoo.org/glsa/glsa-201407-03.xml | vendor advisory |
http://www.openwall.com/lists/oss-security/2013/11/21/1 | third party advisory mailing list |
http://www.securitytracker.com/id/1029369 | vdb entry third party advisory |
http://lists.opensuse.org/opensuse-updates/2013-12/msg00059.html | third party advisory vendor advisory |
http://www.openwall.com/lists/oss-security/2013/11/20/3 | third party advisory mailing list |