Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-10921

Опубликовано: 05 июл. 2017
Источник: nvd
CVSS3: 10
CVSS2: 10
EPSS Низкий

Описание

The grant-table feature in Xen through 4.8.x does not ensure sufficient type counts for a GNTMAP_device_map and GNTMAP_host_map mapping, which allows guest OS users to cause a denial of service (count mismanagement and memory corruption) or obtain privileged host OS access, aka XSA-224 bug 2.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:xen:xen:*:*:*:*:*:*:*:*
Версия до 4.8.1 (включая)

EPSS

Процентиль: 78%
0.01132
Низкий

10 Critical

CVSS3

10 Critical

CVSS2

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 10
ubuntu
больше 8 лет назад

The grant-table feature in Xen through 4.8.x does not ensure sufficient type counts for a GNTMAP_device_map and GNTMAP_host_map mapping, which allows guest OS users to cause a denial of service (count mismanagement and memory corruption) or obtain privileged host OS access, aka XSA-224 bug 2.

CVSS3: 8.5
redhat
больше 8 лет назад

The grant-table feature in Xen through 4.8.x does not ensure sufficient type counts for a GNTMAP_device_map and GNTMAP_host_map mapping, which allows guest OS users to cause a denial of service (count mismanagement and memory corruption) or obtain privileged host OS access, aka XSA-224 bug 2.

CVSS3: 10
debian
больше 8 лет назад

The grant-table feature in Xen through 4.8.x does not ensure sufficien ...

CVSS3: 10
github
больше 3 лет назад

The grant-table feature in Xen through 4.8.x does not ensure sufficient type counts for a GNTMAP_device_map and GNTMAP_host_map mapping, which allows guest OS users to cause a denial of service (count mismanagement and memory corruption) or obtain privileged host OS access, aka XSA-224 bug 2.

fstec
больше 8 лет назад

Уязвимость компонента grant-table гипервизора Xen, позволяющая нарушителю вызвать отказ в обслуживании или получить привилегированный доступ к хосту

EPSS

Процентиль: 78%
0.01132
Низкий

10 Critical

CVSS3

10 Critical

CVSS2

Дефекты

CWE-119