Vulnerability Name: | CVE-2017-15593 | ||||||||||||||||||||
Assigned: | 2017-10-18 | ||||||||||||||||||||
Published: | 2017-10-12 | ||||||||||||||||||||
Updated: | 2018-02-03 | ||||||||||||||||||||
Summary: | An issue was discovered in Xen through 4.9.x allowing x86 PV guest OS users to cause a denial of service (memory leak) because reference counts are mishandled. | ||||||||||||||||||||
CVSS v3 Severity: | 6.5 Medium (CVSS v3 Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H) 5.7 Medium (Temporal CVSS v3 Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H/E:U/RL:O/RC:C)
6.2 Medium (CCN Temporal CVSS v3 Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H/E:U/RL:O/RC:C)
| ||||||||||||||||||||
CVSS v2 Severity: | 4.9 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C)
| ||||||||||||||||||||
Vulnerability Type: | CWE-119 | ||||||||||||||||||||
References: | Source: SECTRACK Type: VENDOR_ADVISORY 1039568 Source: XF Type: UNKNOWN xen-page-type-dos(133338) Source: MLIST Type: UNKNOWN [debian-lts-announce] 20171120 [SECURITY] [DLA 1181-1] xen security update Source: GENTOO Type: UNKNOWN GLSA-201801-14 Source: CONFIRM Type: UNKNOWN https://support.citrix.com/article/CTX228867 Source: DEBIAN Type: UNKNOWN DSA-4050 Source: CONFIRM Type: VENDOR_ADVISORY https://xenbits.xen.org/xsa/advisory-242.html | ||||||||||||||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||
| |||||||||||||||||||||
BACK |