CVE-2008-3687

Publication date 14 August 2008

Last updated 24 July 2024


Ubuntu priority

Heap-based buffer overflow in the flask_security_label function in Xen 3.3, when compiled with the XSM:FLASK module, allows unprivileged domain users (domU) to execute arbitrary code via the flask_op hypercall.

Status

Package Ubuntu Release Status
xen 8.04 LTS hardy Not in release
7.10 gutsy Not in release
7.04 feisty Not in release
6.06 LTS dapper
Not affected
xen-3.0 8.04 LTS hardy Not in release
7.10 gutsy Not in release
7.04 feisty
Not affected
6.06 LTS dapper Not in release
xen-3.1 8.04 LTS hardy
Not affected
7.10 gutsy
Not affected
7.04 feisty Not in release
6.06 LTS dapper Not in release
xen-3.2 8.04 LTS hardy
Not affected
7.10 gutsy Not in release
7.04 feisty Not in release
6.06 LTS dapper Not in release