Citrix XenServer Multiple Vulnerabilities (CTX140984)

This script is Copyright (C) 2014-2017 Tenable Network Security, Inc.

Synopsis :

The remote device is missing a vendor-supplied security patch.

Description :

The remote host is running a version of Citrix XenServer that is
affected by multiple vulnerabilities :

- An information disclosure exists due to the Xen
hypervisor's failure to properly clean memory pages.

- An unspecified vulnerability exists due to a buffer
overflow in the HVM graphics console. (CVE-2014-4947)

- XenServer is affected by an unspecified denial of
service and information disclosure vulnerability.

See also :

Solution :

Apply the relevant hotfix referenced in the advisory.

Risk factor :

Critical / CVSS Base Score : 10.0
CVSS Temporal Score : 8.7
Public Exploit Available : false

Family: Misc.

Nessus Plugin ID: 76771 ()

Bugtraq ID: 68070

CVE ID: CVE-2014-4021

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now