vulnerability

FreeBSD: VID-06574c62-5854-11e6-b334-002590263bf5 (CVE-2016-5403): xen-tools -- virtio: unbounded memory allocation issue

Severity
5
CVSS
(AV:L/AC:L/Au:N/C:N/I:N/A:C)
Published
Aug 2, 2016
Added
Dec 10, 2025
Modified
Dec 10, 2025

Description

The Xen Project reports: A guest can submit virtio requests without bothering to wait for completion and is therefore not bound by virtqueue size... A malicious guest administrator can cause unbounded memory allocation in QEMU, which can cause an Out-of-Memory condition in the domain running qemu. Thus, a malicious guest administrator can cause a denial of service affecting the whole host.

Solution

freebsd-upgrade-package-xen-tools
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.