Candidate: CVE-2013-6375 PublicDate: 2013-11-23 11:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6375 http://lists.xen.org/archives/html/xen-announce/2013-11/msg00006.html Description: Xen 4.2.x and 4.3.x, when using Intel VT-d for PCI passthrough, does not properly flush the TLB after clearing a present translation table entry, which allows local guest administrators to cause a denial of service or gain privileges via unspecified vectors related to an "inverted boolean parameter." Ubuntu-Description: Notes: mdeslaur> only in 4.2 and later mdeslaur> This is XSA-78 Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_xen-3.3: Tags_xen-3.3: universe-binary upstream_xen-3.3: ignored (reached end-of-life) lucid_xen-3.3: not-affected precise_xen-3.3: DNE quantal_xen-3.3: DNE raring_xen-3.3: DNE saucy_xen-3.3: DNE devel_xen-3.3: DNE Patches_xen: Tags_xen: universe-binary upstream_xen: needs-triage lucid_xen: DNE precise_xen: not-affected quantal_xen: not-affected raring_xen: released (4.2.2-0ubuntu0.13.04.3) saucy_xen: released (4.3.0-1ubuntu1.2) devel_xen: released (4.3.0-1ubuntu2)