CVE-2013-1918
Publication date 13 May 2013
Last updated 24 July 2024
Ubuntu priority
Certain page table manipulation operations in Xen 4.1.x, 4.2.x, and earlier are not preemptible, which allows local PV kernels to cause a denial of service via vectors related to “deep page table traversal.”
Status
Package | Ubuntu Release | Status |
---|---|---|
xen | 13.04 raring |
Fixed 4.2.1-0ubuntu3.2
|
12.10 quantal |
Fixed 4.1.3-3ubuntu1.6
|
|
12.04 LTS precise |
Fixed 4.1.2-2ubuntu2.9
|
|
11.10 oneiric | Ignored end of life | |
10.04 LTS lucid | Not in release | |
8.04 LTS hardy | Not in release | |
xen-3.1 | 13.04 raring | Not in release |
12.10 quantal | Not in release | |
12.04 LTS precise | Not in release | |
11.10 oneiric | Not in release | |
10.04 LTS lucid | Not in release | |
8.04 LTS hardy | Ignored end of life | |
xen-3.2 | 13.04 raring | Not in release |
12.10 quantal | Not in release | |
12.04 LTS precise | Not in release | |
11.10 oneiric | Not in release | |
10.04 LTS lucid | Not in release | |
8.04 LTS hardy | Ignored end of life | |
xen-3.3 | 13.04 raring | Not in release |
12.10 quantal | Not in release | |
12.04 LTS precise | Not in release | |
11.10 oneiric | Not in release | |
10.04 LTS lucid | Ignored end of life | |
8.04 LTS hardy | Not in release |
Notes
mdeslaur
hypervisor packages are in universe. For issues in the hypervisor, add appropriate tags to each section, ex: Tags_xen: universe-binary This is XSA-45
seth-arnold
Fix was incomplete / incorrect; see also CVE-2013-1432