CVE-2013-3495

Opensuse - Access Control

Title source: rule
STIX 2.1

Description

The Intel VT-d Interrupt Remapping engine in Xen 3.3.x through 4.3.x allows local guests to cause a denial of service (kernel panic) via a malformed Message Signaled Interrupt (MSI) from a PCI device that is bus mastering capable that triggers a System Error Reporting (SERR) Non-Maskable Interrupt (NMI).

References (8)

Core 8
Core References
Third Party Advisory vendor-advisory x_refsource_gentoo
https://security.gentoo.org/glsa/201504-04
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1028931
Broken Link vdb-entry x_refsource_osvdb
http://osvdb.org/96438
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/54341
Mailing List, Third Party Advisory mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2013/08/20/8
Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00005.html
Third Party Advisory vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00010.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/61854

Scores

EPSS 0.0008
EPSS Percentile 22.7%

Details

CWE
CWE-264
Status published
Products (25)
opensuse/opensuse 13.1
opensuse/opensuse 13.2
xen/xen 3.3.0
xen/xen 3.3.1
xen/xen 3.3.2
xen/xen 3.4.0
xen/xen 3.4.1
xen/xen 3.4.2
xen/xen 3.4.3
xen/xen 3.4.4
... and 15 more
Published Aug 28, 2013
Tracked Since Feb 18, 2026