CVE Vulnerabilities

CVE-2015-8339

Published: Dec 17, 2015 | Modified: Jul 01, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.7 MEDIUM
AV:L/AC:M/Au:N/C:N/I:N/A:C
RedHat/V2
6.3 MODERATE
AV:N/AC:M/Au:S/C:N/I:N/A:C
RedHat/V3
6.2 MODERATE
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Ubuntu
MEDIUM

The memory_exchange function in common/memory.c in Xen 3.2.x through 4.6.x does not properly hand back pages to a domain, which might allow guest OS administrators to cause a denial of service (host crash) via unspecified vectors related to domain teardown.

Affected Software

Name Vendor Start Version End Version
Xen Xen 3.2.0 (including) 3.2.0 (including)
Xen Xen 3.2.1 (including) 3.2.1 (including)
Xen Xen 3.2.2 (including) 3.2.2 (including)
Xen Xen 3.2.3 (including) 3.2.3 (including)
Xen Xen 3.3.0 (including) 3.3.0 (including)
Xen Xen 3.3.1 (including) 3.3.1 (including)
Xen Xen 3.3.2 (including) 3.3.2 (including)
Xen Xen 3.4.0 (including) 3.4.0 (including)
Xen Xen 3.4.1 (including) 3.4.1 (including)
Xen Xen 3.4.2 (including) 3.4.2 (including)
Xen Xen 3.4.3 (including) 3.4.3 (including)
Xen Xen 3.4.4 (including) 3.4.4 (including)
Xen Xen 4.0.0 (including) 4.0.0 (including)
Xen Xen 4.0.1 (including) 4.0.1 (including)
Xen Xen 4.0.2 (including) 4.0.2 (including)
Xen Xen 4.0.3 (including) 4.0.3 (including)
Xen Xen 4.0.4 (including) 4.0.4 (including)
Xen Xen 4.1.0 (including) 4.1.0 (including)
Xen Xen 4.1.1 (including) 4.1.1 (including)
Xen Xen 4.1.2 (including) 4.1.2 (including)
Xen Xen 4.1.3 (including) 4.1.3 (including)
Xen Xen 4.1.4 (including) 4.1.4 (including)
Xen Xen 4.1.5 (including) 4.1.5 (including)
Xen Xen 4.1.6 (including) 4.1.6 (including)
Xen Xen 4.1.6.1 (including) 4.1.6.1 (including)
Xen Xen 4.2.0 (including) 4.2.0 (including)
Xen Xen 4.2.1 (including) 4.2.1 (including)
Xen Xen 4.2.2 (including) 4.2.2 (including)
Xen Xen 4.2.3 (including) 4.2.3 (including)
Xen Xen 4.2.4 (including) 4.2.4 (including)
Xen Xen 4.2.5 (including) 4.2.5 (including)
Xen Xen 4.3.0 (including) 4.3.0 (including)
Xen Xen 4.3.1 (including) 4.3.1 (including)
Xen Xen 4.3.2 (including) 4.3.2 (including)
Xen Xen 4.3.3 (including) 4.3.3 (including)
Xen Xen 4.3.4 (including) 4.3.4 (including)
Xen Xen 4.4.0 (including) 4.4.0 (including)
Xen Xen 4.4.1 (including) 4.4.1 (including)
Xen Xen 4.4.2 (including) 4.4.2 (including)
Xen Xen 4.4.3 (including) 4.4.3 (including)
Xen Xen 4.5.0 (including) 4.5.0 (including)
Xen Xen 4.5.1 (including) 4.5.1 (including)
Xen Xen 4.5.2 (including) 4.5.2 (including)
Xen Xen 4.6.0 (including) 4.6.0 (including)
Xen Ubuntu devel *
Xen Ubuntu precise *
Xen Ubuntu trusty *
Xen Ubuntu upstream *
Xen Ubuntu vivid *
Xen Ubuntu wily *

References