PT-2015-7624 · Xen · Xen

Ian Campbell

·

Publicado

2015-10-30

·

Atualizado

2017-07-01

·

CVE-2015-7814

CVSS v2.0

4.7

Média

VetorAV:L/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Xen versions prior to 4.7
Description A race condition exists in the relinquish memory function, allowing local domains with partial management control to cause a denial of service, resulting in a host crash. This can be achieved through vectors involving the destruction of a domain and using the XENMEM decrease reservation function to reduce the memory of the domain.
Recommendations For versions prior to 4.7, update to a newer version to mitigate the risk of a denial of service.

Correção

DoS

Buffer Overflow

Race Condition

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2015-7814
DSA-3414-1
MGASA-2016-0098

Produtos afetados

Xen