Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-14317

Опубликовано: 12 сент. 2017
Источник: redhat
CVSS3: 4.4
EPSS Низкий

Описание

A domain cleanup issue was discovered in the C xenstore daemon (aka cxenstored) in Xen through 4.9.x. When shutting down a VM with a stubdomain, a race in cxenstored may cause a double-free. The xenstored daemon may crash, resulting in a DoS of any parts of the system relying on it (including domain creation / destruction, ballooning, device changes, etc.).

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5xenWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1486709xen: cxenstored: Race in domain cleanup (XSA-233)

EPSS

Процентиль: 35%
0.00141
Низкий

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.6
ubuntu
больше 8 лет назад

A domain cleanup issue was discovered in the C xenstore daemon (aka cxenstored) in Xen through 4.9.x. When shutting down a VM with a stubdomain, a race in cxenstored may cause a double-free. The xenstored daemon may crash, resulting in a DoS of any parts of the system relying on it (including domain creation / destruction, ballooning, device changes, etc.).

CVSS3: 5.6
nvd
больше 8 лет назад

A domain cleanup issue was discovered in the C xenstore daemon (aka cxenstored) in Xen through 4.9.x. When shutting down a VM with a stubdomain, a race in cxenstored may cause a double-free. The xenstored daemon may crash, resulting in a DoS of any parts of the system relying on it (including domain creation / destruction, ballooning, device changes, etc.).

CVSS3: 5.6
debian
больше 8 лет назад

A domain cleanup issue was discovered in the C xenstore daemon (aka cx ...

CVSS3: 5.6
github
больше 3 лет назад

A domain cleanup issue was discovered in the C xenstore daemon (aka cxenstored) in Xen through 4.9.x. When shutting down a VM with a stubdomain, a race in cxenstored may cause a double-free. The xenstored daemon may crash, resulting in a DoS of any parts of the system relying on it (including domain creation / destruction, ballooning, device changes, etc.).

suse-cvrf
больше 8 лет назад

Security update for xen

EPSS

Процентиль: 35%
0.00141
Низкий

4.4 Medium

CVSS3