Oval Definition:oval:com.ubuntu.precise:def:20158104000
Revision Date:2015-11-16Version:1
Title:CVE-2015-8104 on Ubuntu 12.04 LTS (precise) - medium.
Description:The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic or hang) by triggering many #DB (aka Debug) exceptions, related to svm.c. Jan Beulich discovered that the KVM svm hypervisor implementation in the Linux kernel did not properly catch Debug exceptions on AMD processors. An attacker in a guest virtual machine could use this to cause a denial of service (system crash) in the host OS.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2015-8104
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND Package Information
  • The 'linux' package in precise was vulnerable but has been fixed (note: '3.2.0-96.136').
  • OR NOT While related to the CVE in some way, the 'linux-armadaxp' package in precise is not affected (note: 'x86 only').
  • OR While related to the CVE in some way, a decision has been made to ignore it (note: 'abandoned').
  • OR While related to the CVE in some way, a decision has been made to ignore it (note: 'abandoned').
  • OR While related to the CVE in some way, a decision has been made to ignore it (note: 'abandoned').
  • OR While related to the CVE in some way, a decision has been made to ignore it (note: 'end-of-life').
  • OR While related to the CVE in some way, a decision has been made to ignore it (note: 'end-of-life').
  • OR While related to the CVE in some way, a decision has been made to ignore it (note: 'end-of-life').
  • OR The 'linux-lts-trusty' package in precise was vulnerable but has been fixed (note: '3.13.0-73.116~precise1').
  • OR While related to the CVE in some way, a decision has been made to ignore it (note: 'abandoned').
  • OR NOT While related to the CVE in some way, the 'linux-ti-omap4' package in precise is not affected (note: 'x86 only').
  • OR The 'virtualbox' package in precise is affected and needs fixing.
  • OR The 'xen' package in precise was vulnerable but has been fixed (note: '4.1.6.1-0ubuntu0.12.04.7').
  • BACK