CVE-2013-2077: Xen

Medium severity, CVSS 5.2. EPSS: 0.5% chance of exploitation in the next 30 days.

Xen 4.0.x, 4.1.x, and 4.2.x does not properly restrict the contents of a XRSTOR, which allows local PV guest users to cause a denial of service (unhandled exception and hypervisor crash) via unspecified vectors.

Affected products

  • Xen Xen: version 4.0.0 only; version 4.0.1 only; version 4.0.2 only; version 4.0.3 only; version 4.0.4 only; version 4.1.0 only; …

Published 2013-08-28. Last modified 2026-06-16.