View at Official ubuntu advisory, NVD, CVE.org · CVE detail
Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.
CVE-2008-1952 medium priority: Ubuntu including 5 source packages (xen, xen-3.0, xen-3.1, xen-3.2, xen-3.3), 60 status rows across 12 suites (dapper, feisty, gutsy, hardy, intrepid, jaunty, karmic, lucid, maverick, natty, oneiric, upstream): DNE 42, not-affected 9, ignored 5, needs-triage 4.
The backend for XenSource Xen Para Virtualized Frame Buffer (PVFB) in Xen ioemu does not properly restrict the frame buffer size, which allows attackers to cause a denial of service (crash) by mapping an arbitrary amount of guest memory.