Off-by-one in Xen - #VU48639
Published: November 24, 2020
Xen
Xen Project
Description
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to an off-by-one error. A local user on the HVM or PVH system can run a specially crafted program on the guest OS, trigger an off-by-one error and execute arbitrary code on the hypervisor.
Note, the vulnerability exists due to incorrect patch of vulnerability #VU48638.