Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-27672

Опубликовано: 22 окт. 2020
Источник: debian
EPSS Низкий

Описание

An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a host OS denial of service, achieve data corruption, or possibly gain privileges by exploiting a race condition that leads to a use-after-free involving 2MiB and 1GiB superpages.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
xenfixed4.14.0+80-gd101b417b7-1package
xenend-of-lifestretchpackage

Примечания

  • https://xenbits.xen.org/xsa/advisory-345.html

EPSS

Процентиль: 11%
0.00039
Низкий

Связанные уязвимости

CVSS3: 7
ubuntu
больше 5 лет назад

An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a host OS denial of service, achieve data corruption, or possibly gain privileges by exploiting a race condition that leads to a use-after-free involving 2MiB and 1GiB superpages.

CVSS3: 7.8
redhat
больше 5 лет назад

An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a host OS denial of service, achieve data corruption, or possibly gain privileges by exploiting a race condition that leads to a use-after-free involving 2MiB and 1GiB superpages.

CVSS3: 7
nvd
больше 5 лет назад

An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a host OS denial of service, achieve data corruption, or possibly gain privileges by exploiting a race condition that leads to a use-after-free involving 2MiB and 1GiB superpages.

CVSS3: 7
github
больше 3 лет назад

An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a host OS denial of service, achieve data corruption, or possibly gain privileges by exploiting a race condition that leads to a use-after-free involving 2MiB and 1GiB superpages.

CVSS3: 7
fstec
больше 5 лет назад

Уязвимость гипервизора Xen, вызванная одновременным выполнением с использованием общего ресурса с неправильной синхронизацией («Ситуация гонки»), позволяющая нарушителю вызвать отказ в обслуживании или повысить свои привилегии

EPSS

Процентиль: 11%
0.00039
Низкий