CVE-2020-11741

Source
https://cve.org/CVERecord?id=CVE-2020-11741
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-11741.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2020-11741
Downstream
Related
Published
2020-04-14T13:15:12.843Z
Modified
2026-02-14T00:38:32.995557Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (with active profiling) to obtain sensitive information about other guests, cause a denial of service, or possibly gain privileges. For guests for which "active" profiling was enabled by the administrator, the xenoprof code uses the standard Xen shared ring structure. Unfortunately, this code did not treat the guest as a potential adversary: it trusts the guest not to modify buffer size information or modify head / tail pointers in unexpected ways. This can crash the host (DoS). Privilege escalation cannot be ruled out.

References

Affected packages

Git / github.com/sleuthkit/sleuthkit

Affected ranges

Type
GIT
Repo
https://github.com/sleuthkit/sleuthkit
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

Other
VisualStudio_2010
ct-3.*
ct-3.10.0
ct-3.11.0
ct-3.12.0
ct-3.13.0
ct-3.5.0
ct-3.6.0
ct-3.8.0
ct-3.9.0
sleuthkit-4.*
sleuthkit-4.0.0
sleuthkit-4.0.0b1
sleuthkit-4.0.1
sleuthkit-4.0.2
sleuthkit-4.1.0
sleuthkit-4.1.1
sleuthkit-4.1.2
sleuthkit-4.1.3
sleuthkit-4.10.0
sleuthkit-4.10.1
sleuthkit-4.10.2
sleuthkit-4.11.0
sleuthkit-4.11.1
sleuthkit-4.12.0
sleuthkit-4.12.1
sleuthkit-4.13.0
sleuthkit-4.2.0
sleuthkit-4.3.1
sleuthkit-4.4.0
sleuthkit-4.4.1
sleuthkit-4.4.2
sleuthkit-4.5.0
sleuthkit-4.6.0
sleuthkit-4.6.1
sleuthkit-4.6.2
sleuthkit-4.6.3
sleuthkit-4.6.4
sleuthkit-4.6.5
sleuthkit-4.6.6
sleuthkit-4.6.7
sleuthkit-4.7.0
sleuthkit-4.8.0
sleuthkit-4.8.0-fixed
sleuthkit-4.9.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-11741.json"