PT-2015-1571 · Xen+2 · Xen+2
Jan Beulich
·
Published
2015-06-03
·
Updated
2024-06-15
·
CVE-2015-4103
CVSS v2.0
4.9
Medium
| Vector | AV:L/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Xen versions 3.3.x through 4.5.x
Description
The issue is related to inadequate access control for certain functions in the Xen hypervisor. Exploitation of this issue can allow a local attacker to cause a denial of service in the host operating system. Specifically, the problem lies in the lack of proper restriction on write access to the host MSI message data field, which can be exploited by local x86 HVM guest administrators to cause confusion in host interrupt handling. This can be achieved through vectors related to qemu and accessing spanning multiple fields.
Recommendations
For Xen versions 3.3.x through 4.5.x, consider restricting access to the
qemu module to minimize the risk of exploitation until a patch is available. As a temporary workaround, limit the ability of local x86 HVM guest administrators to access and modify the host MSI message data field.Exploit
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Suse
Ubuntu
Xen