CVE-2008-3687 (Xen, xen_flask_module) [Sitemap] - HeapOverflow Computer Security Community & Forums : Heap Overflow.com

PDA

View Full Version : CVE-2008-3687 (Xen, xen_flask_module)


Heap
15-08-08, 18:44
Heap-based buffer overflow in the flask_security_label function in Xen 3.3, when compiled with the XSM:FLASK module, allows unprivileged domain users (domU) to execute arbitrary code via the flask_op hypercall.

More... (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3687)