Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-15589

Опубликовано: 18 окт. 2017
Источник: debian

Описание

An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the host OS (or an arbitrary guest OS) because intercepted I/O operations can cause a write of data from uninitialized hypervisor stack memory.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
xenfixed4.8.2+xsa245-0+deb9u1package

Примечания

  • https://xenbits.xen.org/xsa/advisory-239.html

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 9 лет назад

An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the host OS (or an arbitrary guest OS) because intercepted I/O operations can cause a write of data from uninitialized hypervisor stack memory.

CVSS3: 6.8
redhat
почти 9 лет назад

An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the host OS (or an arbitrary guest OS) because intercepted I/O operations can cause a write of data from uninitialized hypervisor stack memory.

CVSS3: 6.5
nvd
почти 9 лет назад

An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the host OS (or an arbitrary guest OS) because intercepted I/O operations can cause a write of data from uninitialized hypervisor stack memory.

CVSS3: 6.5
github
больше 4 лет назад

An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the host OS (or an arbitrary guest OS) because intercepted I/O operations can cause a write of data from uninitialized hypervisor stack memory.

suse-cvrf
почти 9 лет назад

Security update for xen