CVE-2017-15594
Summary
| CVE | CVE-2017-15594 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-10-18 08:29:00 UTC |
| Updated | 2019-10-03 00:03:00 UTC |
| Description | An issue was discovered in Xen through 4.9.x allowing x86 SVM PV guest OS users to cause a denial of service (hypervisor crash) or gain privileges because IDT settings are mishandled during CPU hotplugging. |
Risk And Classification
Problem Types: NVD-CWE-noinfo
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| XSA-244 - Xen Security Advisories | CONFIRM | xenbits.xen.org | Mitigation, Patch, Vendor Advisory |
| Xen: Multiple vulnerabilities (GLSA 201801-14) — Gentoo security | GENTOO | security.gentoo.org | |
| Debian -- Security Information -- DSA-4050-1 xen | DEBIAN | www.debian.org | |
| [SECURITY] [DLA 1559-1] xen security update | MLIST | lists.debian.org | |
| Xen Multiple Flaws on x86 Systems Let Local Guest System Users Obtain Memory Contents and Potentially Sensitive Information, Deny Service on the Host System, and Gain Elevated Privileges on the Host System - SecurityTracker | SECTRACK | www.securitytracker.com | Third Party Advisory, VDB Entry |
| Citrix XenServer Multiple Security Updates | CONFIRM | support.citrix.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.