cbcvebase.
CVE-2013-1952
published 2013-05-13

CVE-2013-1952: Xen 4.x, when using Intel VT-d for a bus mastering capable PCI device, does not properly check the source when accessing a bridge device's interrupt remapping…

PriorityP48low1.9CVSS 2.0
AVLACMAuNCNINAP
EPSS
0.42%
34.2th percentile
Xen 4.x, when using Intel VT-d for a bus mastering capable PCI device, does not properly check the source when accessing a bridge device's interrupt remapping table entries for MSI interrupts, which allows local guest domains to cause a denial of service (interrupt injection) via unspecified vectors.

Affected

18 ranges
VendorProductVersion rangeFixed in
debianxen< xen 4.1.4-4 (bookworm)xen 4.1.4-4 (bookworm)
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen>= 0 < 4.1.4-44.1.4-4
xenxen>= 0 < 4.1.4-44.1.4-4
xenxen>= 0 < 4.1.4-44.1.4-4
xenxen>= 0 < 4.1.4-44.1.4-4

CVSS provenance

nvdv2.01.9LOWAV:L/AC:M/Au:N/C:N/I:N/A:P
osv1.9LOW
vendor_debian1.9LOW
vendor_redhat1.9LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.