CVE-2011-2519
published 2013-12-27CVE-2011-2519: Xen in the Linux kernel, when running a guest on a host without hardware assisted paging (HAP), allows guest users to cause a denial of service (invalid…
PriorityP417medium5.5CVSS 2.0
AVAACLAuSCNINAC
EPSS
0.67%
48.4th percentile
Xen in the Linux kernel, when running a guest on a host without hardware assisted paging (HAP), allows guest users to cause a denial of service (invalid pointer dereference and hypervisor crash) via the SAHF instruction.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | xen | — | — |
| msrc | cbl_mariner_1.0_arm | — | — |
| msrc | cbl_mariner_1.0_x64 | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_workstation | — | — |
| xen | xen | < 3.3.0 | 3.3.0 |
CVSS provenance
nvdv2.05.5MEDIUMAV:A/AC:L/Au:S/C:N/I:N/A:C
vendor_redhat6.8MEDIUM
vendor_debian5.5LOW
vendor_msrc5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-7vg8-g6px-4578: Xen in the Linux kernel, when running a guest on a host without hardware assisted paging (HAP), allows guest users to cause a denial of service (inval
ghsa_unreviewed·2022-05-13
CVE-2011-2519 [MEDIUM] CWE-476 GHSA-7vg8-g6px-4578: Xen in the Linux kernel, when running a guest on a host without hardware assisted paging (HAP), allows guest users to cause a denial of service (inval
Xen in the Linux kernel, when running a guest on a host without hardware assisted paging (HAP), allows guest users to cause a denial of service (invalid pointer dereference and hypervisor crash) via the SAHF instruction.
Microsoft
CVE-2011-2519: NIST NVD Details: https://nvd
vendor_msrc·2020-09-08·CVSS 5.5
CVE-2011-2519 [MEDIUM] CVE-2011-2519: NIST NVD Details: https://nvd
NIST NVD Details: https://nvd.nist.gov/vuln/detail/CVE-2011-2519
Mariner: Mariner
[email protected]: [email protected]
Exploit Status: DOS:N/A
Remediation: kernel
Red Hat
kernel: xen: x86_emulate: fix SAHF emulation
vendor_redhat·2011-08-30·CVSS 5.5
CVE-2011-2519 [MEDIUM] kernel: xen: x86_emulate: fix SAHF emulation
kernel: xen: x86_emulate: fix SAHF emulation
Xen in the Linux kernel, when running a guest on a host without hardware assisted paging (HAP), allows guest users to cause a denial of service (invalid pointer dereference and hypervisor crash) via the SAHF instruction.
Statement: This issue only affects Red Hat Enterprise Linux 5. The versions of the Linux
kernel-xen as shipped with Red Hat Enterprise Linux 4, 6, and Red Hat Enterprise MRG are not affected. This has been addressed in Red Hat Enterprise Linux 5 via https://rhn.redhat.com/errata/RHSA-2011-1212.html.
Package: kernel (Red Hat Enterprise Linux 4) - Not affected
Package: kernel-xen (Red Hat Enterprise Linux 5) - Affected
Package: kernel (Red Hat Enterprise Linux 6) - Not affected
Package: realtime-kernel (Red Hat Enterprise MR
Debian
CVE-2011-2519: xen - Xen in the Linux kernel, when running a guest on a host without hardware assiste...
vendor_debian·2011·CVSS 5.5
CVE-2011-2519 [MEDIUM] CVE-2011-2519: xen - Xen in the Linux kernel, when running a guest on a host without hardware assiste...
Xen in the Linux kernel, when running a guest on a host without hardware assisted paging (HAP), allows guest users to cause a denial of service (invalid pointer dereference and hypervisor crash) via the SAHF instruction.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
Red Hat
php-pear: symlink vulnerability in PEAR installer
vendor_redhat·2010-11-14·CVSS 6.8
CVE-2011-1072 [MEDIUM] php-pear: symlink vulnerability in PEAR installer
php-pear: symlink vulnerability in PEAR installer
The installer in PEAR before 1.9.2 allows local users to overwrite arbitrary files via a symlink attack on the package.xml file, related to the (1) download_dir, (2) cache_dir, (3) tmp_dir, and (4) pear-build-download directories, a different vulnerability than CVE-2007-2519.
Package: php-pear (Red Hat Enterprise Linux 5) - Not affected
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-2519 kernel: xen: x86_emulate: fix SAHF emulation [fedora-all]
bugzilla·2012-03-01·CVSS 5.5
CVE-2011-2519 [MEDIUM] CVE-2011-2519 kernel: xen: x86_emulate: fix SAHF emulation [fedora-all]
CVE-2011-2519 kernel: xen: x86_emulate: fix SAHF emulation [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bug
Bugzilla
CVE-2011-2519 kernel: xen: x86_emulate: fix SAHF emulation
bugzilla·2011-07-05·CVSS 5.5
CVE-2011-2519 [MEDIUM] CVE-2011-2519 kernel: xen: x86_emulate: fix SAHF emulation
CVE-2011-2519 kernel: xen: x86_emulate: fix SAHF emulation
Backport http://xenbits.xen.org/hg/xen-3.1-testing.hg/rev/15644
The patched code would cause a hypervisor crash due to dereferencing a bogus address (in the first 4 MBs of address space, as EFLAGS bits above bit 21 are always 0, but more likely in the first page).
Discussion:
Statement:
This issue only affects Red Hat Enterprise Linux 5. The versions of the Linux
kernel-xen as shipped with Red Hat Enterprise Linux 4, 6, and Red Hat Enterprise MRG are not affected. This has been addressed in Red Hat Enterprise Linux 5 via https://rhn.redhat.com/errata/RHSA-2011-1212.html.
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 5
Via RHSA-2011:1212 https://rhn.redhat.com/errata/RHSA-2011-1212.html
http://rhn.redhat.com/errata/RHSA-2011-1212.htmlhttp://www.openwall.com/lists/oss-security/2011/08/30/1http://xenbits.xen.org/hg/xen-3.1-testing.hg/rev/15644https://bugzilla.redhat.com/show_bug.cgi?id=718882http://rhn.redhat.com/errata/RHSA-2011-1212.htmlhttp://www.openwall.com/lists/oss-security/2011/08/30/1http://xenbits.xen.org/hg/xen-3.1-testing.hg/rev/15644https://bugzilla.redhat.com/show_bug.cgi?id=718882
2013-12-27
Published