Memory leak in Xen - CVE-2013-0152
Published: February 13, 2013 / Updated: July 28, 2020
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to memory leak within Xen 4.2 and unstable allows local HVM guests to cause a denial of service (host memory consumption) by performing nested virtualization in a way that triggers errors that are not properly handled. A remote attacker can perform a denial of service attack.
Affected software
Gentoo Linux
xen (Alpine package)
app-emulation/xen
app-emulation/xen-pvgrub
app-emulation/xen-tools
How to mitigate CVE-2013-0152
app-emulation/xen - update to 4.2.2-r1
app-emulation/xen-pvgrub - update to 4.2.2-r1
app-emulation/xen-tools - update to 4.2.2-r3