cbcvebase.
CVE-2013-4375
published 2014-01-19

CVE-2013-4375: The qdisk PV disk backend in qemu-xen in Xen 4.2.x and 4.3.x before 4.3.1, and qemu 1.1 and other versions, allows local HVM guests to cause a denial of…

PriorityP47low2.7CVSS 2.0
AVAACLAuSCNINAP
EPSS
0.58%
44.1th percentile
The qdisk PV disk backend in qemu-xen in Xen 4.2.x and 4.3.x before 4.3.1, and qemu 1.1 and other versions, allows local HVM guests to cause a denial of service (domain grant reference consumption) via unspecified vectors.

Affected

16 ranges
VendorProductVersion rangeFixed in
debianqemu< qemu 1.7.0+dfsg-1 (bookworm)qemu 1.7.0+dfsg-1 (bookworm)
debianxen< qemu 1.7.0+dfsg-1 (bookworm)qemu 1.7.0+dfsg-1 (bookworm)
qemuqemu
qemuqemu>= 0 < 1.7.0+dfsg-11.7.0+dfsg-1
qemuqemu>= 0 < 1.7.0+dfsg-11.7.0+dfsg-1
qemuqemu>= 0 < 1.7.0+dfsg-11.7.0+dfsg-1
qemuqemu>= 0 < 1.7.0+dfsg-11.7.0+dfsg-1
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen>= 0 < 4.24.2
xenxen>= 0 < 4.24.2
xenxen>= 0 < 4.24.2
xenxen>= 0 < 4.24.2

CVSS provenance

nvdv2.02.7LOWAV:A/AC:L/Au:S/C:N/I:N/A:P
osv2.7LOW
vendor_ubuntu7.2HIGH
vendor_debian2.7LOW
vendor_redhat2.7LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.