Multiple integer overflows in unspecified suboperations in the flask hypercall in Xen 3.2.x and earlier, when XSM is enabled, allow local users to cause a denial of service (processor fault) via unspecified vectors, a different vulnerability than CVE-2014-1891, CVE-2014-1892, and CVE-2014-1893.
Weaknesses in this category are related to improper calculation or conversion of numbers.
Link | Tags |
---|---|
http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00011.html | vendor advisory |
http://www.openwall.com/lists/oss-security/2014/02/10/8 | mailing list |
http://xenbits.xen.org/xsa/advisory-84.html | patch vendor advisory |
http://www.openwall.com/lists/oss-security/2014/02/07/4 | mailing list |
http://security.gentoo.org/glsa/glsa-201407-03.xml | vendor advisory |
http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00010.html | vendor advisory |
http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00021.html | vendor advisory |
http://www.openwall.com/lists/oss-security/2014/02/07/12 | mailing list |