xen/arm: No memory limit for dom0less domUs The dom0less feature allows an administrator to create multiple unprivileged domains directly from Xen. Unfortunately, the memory limit from them is not set. This allow a domain to allocate memory beyond what an administrator originally configured.
References
Link | Resource |
---|---|
https://xenbits.xenproject.org/xsa/advisory-383.txt | Vendor Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FZCNPSRPGFCQRYE2BI4D4Q4SCE56ANV2/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/LPRVHW4J4ZCPPOHZEWP5MOJT7XDGFFPJ/ | Mailing List Third Party Advisory |
https://www.debian.org/security/2021/dsa-4977 | Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2VQCFAPBNGBBAOMJZG6QBREOG5IIDZID/ | Mailing List Third Party Advisory |
https://security.gentoo.org/glsa/202208-23 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Information
Published : 2021-08-27 12:15
Updated : 2022-10-28 06:45
NVD link : CVE-2021-28700
Mitre link : CVE-2021-28700
JSON object : View
CWE
CWE-770
Allocation of Resources Without Limits or Throttling
Products Affected
debian
- debian_linux
xen
- xen
fedoraproject
- fedora