tools/libxc/xc_dom_bzimageloader.c in Xen 3.2, 3.3, 4.0, and 4.1 allows local users to cause a denial of service (management software infinite loop and management domain resource consumption) via unspecified vectors related to "Lack of error checking in the decompression loop."
https://exchange.xforce.ibmcloud.com/vulnerabilities/69381
https://euvd.enisa.europa.eu/vulnerability/EUVD-2011-3226
http://security.gentoo.org/glsa/glsa-201309-24.xml
http://secunia.com/advisories/55082
http://lists.xensource.com/archives/html/xen-devel/2011-05/msg00491.html
http://lists.xensource.com/archives/html/xen-devel/2011-05/msg00483.html