CVE-2015-7814

MEDIUM

Description

Race condition in the relinquish_memory function in arch/arm/domain.c in Xen 4.6.x and earlier allows local domains with partial management control to cause a denial of service (host crash) via vectors involving the destruction of a domain and using XENMEM_decrease_reservation to reduce the memory of the domain.

References

http://lists.fedoraproject.org/pipermail/package-announce/2015-November/171082.html

http://lists.fedoraproject.org/pipermail/package-announce/2015-November/171185.html

http://lists.fedoraproject.org/pipermail/package-announce/2015-November/171249.html

http://www.debian.org/security/2015/dsa-3414

http://www.securitytracker.com/id/1034030

http://xenbits.xen.org/xsa/advisory-147.html

https://security.gentoo.org/glsa/201604-03

Details

Source: MITRE

Published: 2015-10-30

Updated: 2017-07-01

Type: CWE-119

Risk Information

CVSS v2.0

Base Score: 4.7

Vector: AV:L/AC:M/Au:N/C:N/I:N/A:C

Impact Score: 6.9

Exploitability Score: 3.4

Severity: MEDIUM