OracleVM 2.1 : xen (OVMSA-2008-2007)

Medium Nessus Plugin ID 79449


The remote OracleVM host is missing one or more security updates.


The remote OracleVM system is missing necessary patches to address critical security updates :

- CVE-2008-1945: add image format options for USB storage and removable media

- CVE-2008-1952: included in fix for CVE-2008-1943 (3.1.4-0.1.3.el5)


Update the affected packages.

See Also

Plugin Details

Severity: Medium

ID: 79449

File Name: oraclevm_OVMSA-2008-2007.nasl

Version: $Revision: 1.3 $

Type: local

Published: 2014/11/26

Modified: 2017/02/14

Dependencies: 12634

Risk Information

Risk Factor: Medium


Base Score: 4.9

Vector: CVSS2#AV:L/AC:L/Au:N/C:C/I:N/A:N

Vulnerability Information

CPE: p-cpe:/a:oracle:vm:xen, p-cpe:/a:oracle:vm:xen-64, p-cpe:/a:oracle:vm:xen-debugger, p-cpe:/a:oracle:vm:xen-devel, p-cpe:/a:oracle:vm:xen-pvhvm-devel, p-cpe:/a:oracle:vm:xen-tools, cpe:/o:oracle:vm_server:2.1

Required KB Items: Host/local_checks_enabled, Host/OracleVM/release, Host/OracleVM/rpm-list

Patch Publication Date: 2008/10/03

Reference Information

CVE: CVE-2008-1943, CVE-2008-1945, CVE-2008-1952

CWE: 119, 200