PT-2015-7624 · Xen · Xen

Ian Campbell

·

Published

2015-10-30

·

Updated

2017-07-01

·

CVE-2015-7814

CVSS v2.0

4.7

Medium

VectorAV:L/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Xen versions prior to 4.7
Description A race condition exists in the relinquish memory function, allowing local domains with partial management control to cause a denial of service, resulting in a host crash. This can be achieved through vectors involving the destruction of a domain and using the XENMEM decrease reservation function to reduce the memory of the domain.
Recommendations For versions prior to 4.7, update to a newer version to mitigate the risk of a denial of service.

Fix

DoS

Buffer Overflow

Race Condition

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-7814
DSA-3414-1
MGASA-2016-0098

Affected Products

Xen