Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2015-3340

Опубликовано: 20 апр. 2015
Источник: redhat
CVSS2: 2.3
EPSS Низкий

Описание

Xen 4.2.x through 4.5.x does not initialize certain fields, which allows certain remote service domains to obtain sensitive information from memory via a (1) XEN_DOMCTL_gettscinfo or (2) XEN_SYSCTL_getdomaininfolist request.

Отчет

This issue did not affect the versions of xen as shipped with Red Hat Enterprise Linux 5.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5kernel-xenNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-200
https://bugzilla.redhat.com/show_bug.cgi?id=1214035xen: information leak through XEN_DOMCTL_gettscinfo (xsa132)

EPSS

Процентиль: 54%
0.00793
Низкий

2.3 Low

CVSS2

Связанные уязвимости

ubuntu
больше 11 лет назад

Xen 4.2.x through 4.5.x does not initialize certain fields, which allows certain remote service domains to obtain sensitive information from memory via a (1) XEN_DOMCTL_gettscinfo or (2) XEN_SYSCTL_getdomaininfolist request.

nvd
больше 11 лет назад

Xen 4.2.x through 4.5.x does not initialize certain fields, which allows certain remote service domains to obtain sensitive information from memory via a (1) XEN_DOMCTL_gettscinfo or (2) XEN_SYSCTL_getdomaininfolist request.

debian
больше 11 лет назад

Xen 4.2.x through 4.5.x does not initialize certain fields, which allo ...

github
больше 4 лет назад

Xen 4.2.x through 4.5.x does not initialize certain fields, which allows certain remote service domains to obtain sensitive information from memory via a (1) XEN_DOMCTL_gettscinfo or (2) XEN_SYSCTL_getdomaininfolist request.

suse-cvrf
больше 11 лет назад

Security update for xen

EPSS

Процентиль: 54%
0.00793
Низкий

2.3 Low

CVSS2