CVE-2013-2078
EPSS 0.06%
Description
Xen 4.0.2 through 4.0.4, 4.1.x, and 4.2.x allows local PV guest users to cause a denial of service (hypervisor crash) via certain bit combinations to the XSETBV instruction.
How to fix CVE-2013-2078
To remediate CVE-2013-2078, upgrade the affected package to a fixed version below.
- Debian/xen—upgrade to 4.2.2-1 or later
Is CVE-2013-2078 being exploited?
Low — EPSS is 0.1%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 4.2.2-1