Xen through 4.8.x mishandles the contains segment descriptors property during GNTTABOP_transfer (aka guest transfer) operations, which might allow PV guest OS users to execute arbitrary code on the host OS, aka XSA-214.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Xen | Xen | 4.8.0 (including) | 4.8.0 (including) |
Xen | Xen | 4.8.1 (including) | 4.8.1 (including) |
Xen | Ubuntu | devel | * |
Xen | Ubuntu | trusty | * |
Xen | Ubuntu | xenial | * |
Xen | Ubuntu | yakkety | * |
Xen | Ubuntu | zesty | * |