Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-14319

Опубликовано: 12 сент. 2017
Источник: debian

Описание

A grant unmapping issue was discovered in Xen through 4.9.x. When removing or replacing a grant mapping, the x86 PV specific path needs to make sure page table entries remain in sync with other accounting done. Although the identity of the page frame was validated correctly, neither the presence of the mapping nor page writability were taken into account.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
xenfixed4.8.2+xsa245-0+deb9u1package

Примечания

  • https://xenbits.xen.org/xsa/advisory-234.html

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 9 лет назад

A grant unmapping issue was discovered in Xen through 4.9.x. When removing or replacing a grant mapping, the x86 PV specific path needs to make sure page table entries remain in sync with other accounting done. Although the identity of the page frame was validated correctly, neither the presence of the mapping nor page writability were taken into account.

CVSS3: 8.8
redhat
почти 9 лет назад

A grant unmapping issue was discovered in Xen through 4.9.x. When removing or replacing a grant mapping, the x86 PV specific path needs to make sure page table entries remain in sync with other accounting done. Although the identity of the page frame was validated correctly, neither the presence of the mapping nor page writability were taken into account.

CVSS3: 8.8
nvd
почти 9 лет назад

A grant unmapping issue was discovered in Xen through 4.9.x. When removing or replacing a grant mapping, the x86 PV specific path needs to make sure page table entries remain in sync with other accounting done. Although the identity of the page frame was validated correctly, neither the presence of the mapping nor page writability were taken into account.

CVSS3: 8.8
github
больше 4 лет назад

A grant unmapping issue was discovered in Xen through 4.9.x. When removing or replacing a grant mapping, the x86 PV specific path needs to make sure page table entries remain in sync with other accounting done. Although the identity of the page frame was validated correctly, neither the presence of the mapping nor page writability were taken into account.

CVSS3: 8.8
fstec
почти 9 лет назад

Уязвимость гипервизора Xen, связанная с ошибками сопоставления прав доступа, позволяющая нарушителю повысить свои привилегии или вызвать отказ в обслуживании