LOW · 2.1

CVE-2008-1952

The backend for XenSource Xen Para Virtualized Frame Buffer (PVFB) in Xen ioemu does not properly restrict the frame buffer size, which allows attackers to cause a denial of service (crash) by mapping...

Vulnerability Description

The backend for XenSource Xen Para Virtualized Frame Buffer (PVFB) in Xen ioemu does not properly restrict the frame buffer size, which allows attackers to cause a denial of service (crash) by mapping an arbitrary amount of guest memory.

CVSS Score

2.1

LOW

AV:L/AC:L/Au:N/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
XensourceXen Para Virtualized Frame BufferAll versions

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-1952?

CVE-2008-1952 is a vulnerability with a CVSS score of 2.1 (LOW). The backend for XenSource Xen Para Virtualized Frame Buffer (PVFB) in Xen ioemu does not properly restrict the frame buffer size, which allows attackers to cause a denial of service (crash) by mapping...

How severe is CVE-2008-1952?

CVE-2008-1952 has been rated LOW with a CVSS base score of 2.1/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-1952?

Check the references section above for vendor advisories and patch information. Affected products include: Xensource Xen Para Virtualized Frame Buffer.