Description: A vulnerability has been reported in Xen, which can be exploited by malicious, local users to bypass certain security restrictions.
The vulnerability is caused due to an error within the "copy_to_user()" function in the PAL emulator. This can be exploited by a HVM guest to gain access to arbitrary physical memory regions.
The vulnerability is reported in version 3.1.2 running on IA64 platforms. Other versions may also be affected.
Solution: Fixed in the development version.
Provided and/or discovered by: Reported by the vendor.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.