CVE-2017-15591
Summary
| CVE | CVE-2017-15591 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-10-18 08:29:00 UTC |
| Updated | 2018-01-16 02:29:00 UTC |
| Description | An issue was discovered in Xen 4.5.x through 4.9.x allowing attackers (who control a stub domain kernel or tool stack) to cause a denial of service (host OS crash) because of a missing comparison (of range start to range end) within the DMOP map/unmap implementation. |
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|
| Operating System |
Xen |
Xen |
4.5.0 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.5.1 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.5.2 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.5.3 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.5.5 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.0 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.1 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.3 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.4 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.5 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.6 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.7.0 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.7.1 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.7.2 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.7.3 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.8.0 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.8.1 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.9.0 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.5.0 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.5.1 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.5.2 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.5.3 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.5.5 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.0 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.1 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.3 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.4 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.5 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.6.6 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.7.0 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.7.1 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.7.2 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.7.3 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.8.0 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.8.1 |
All |
All |
All |
| Operating System |
Xen |
Xen |
4.9.0 |
All |
All |
All |
References
| Reference | Source | Link | Tags |
|---|
| XSA-238 - Xen Security Advisories |
CONFIRM |
xenbits.xen.org |
Mailing List, Mitigation, Patch, Vendor Advisory |
| Xen: Multiple vulnerabilities (GLSA 201801-14) — Gentoo security |
GENTOO |
security.gentoo.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 710266 Gentoo Linux Xen Multiple Vulnerabilities (GLSA 201801-14)