CVE Vulnerabilities

CVE-2015-7311

Published: Oct 01, 2015 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.6 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

libxl in Xen 4.1.x through 4.6.x does not properly handle the readonly flag on disks when using the qemu-xen device model, which allows local guest users to write to a read-only disk image.

Affected Software

Name Vendor Start Version End Version
Xen Xen 4.1.0 (including) 4.1.0 (including)
Xen Xen 4.1.1 (including) 4.1.1 (including)
Xen Xen 4.1.2 (including) 4.1.2 (including)
Xen Xen 4.1.3 (including) 4.1.3 (including)
Xen Xen 4.1.4 (including) 4.1.4 (including)
Xen Xen 4.1.5 (including) 4.1.5 (including)
Xen Xen 4.1.6.1 (including) 4.1.6.1 (including)
Xen Xen 4.2.0 (including) 4.2.0 (including)
Xen Xen 4.2.1 (including) 4.2.1 (including)
Xen Xen 4.2.2 (including) 4.2.2 (including)
Xen Xen 4.2.3 (including) 4.2.3 (including)
Xen Xen 4.2.4 (including) 4.2.4 (including)
Xen Xen 4.2.5 (including) 4.2.5 (including)
Xen Xen 4.3.0 (including) 4.3.0 (including)
Xen Xen 4.3.1 (including) 4.3.1 (including)
Xen Xen 4.3.2 (including) 4.3.2 (including)
Xen Xen 4.3.3 (including) 4.3.3 (including)
Xen Xen 4.3.4 (including) 4.3.4 (including)
Xen Xen 4.4.0 (including) 4.4.0 (including)
Xen Xen 4.4.0-rc1 (including) 4.4.0-rc1 (including)
Xen Xen 4.4.1 (including) 4.4.1 (including)
Xen Xen 4.5.0 (including) 4.5.0 (including)
Xen Xen 4.5.1 (including) 4.5.1 (including)

References