CVE-2017-10915

critical
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

The shadow-paging feature in Xen through 4.8.x mismanages page references and consequently introduces a race condition, which allows guest OS users to obtain Xen privileges, aka XSA-219.

References

http://www.debian.org/security/2017/dsa-3969

http://www.securityfocus.com/bid/99174

https://security.gentoo.org/glsa/201708-03

https://security.gentoo.org/glsa/201710-17

https://xenbits.xen.org/xsa/advisory-219.html

Details

Source: MITRE

Published: 2017-07-05

Updated: 2017-11-04

Type: CWE-362

Risk Information

CVSS v2

Base Score: 6.8

Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 8.6

Severity: MEDIUM

CVSS v3

Base Score: 9

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H

Impact Score: 6

Exploitability Score: 2.2

Severity: CRITICAL

Vulnerable Software

Configuration 1

OR

cpe:2.3:o:xen:xen:*:*:*:*:*:*:*:* versions up to 4.8.1 (inclusive)

Tenable Plugins

View all (14 total)

IDNameProductFamilySeverity
140019OracleVM 3.4 : xen (OVMSA-2020-0039) (Bunker Buster) (Foreshadow) (MDSUM/RIDL) (MFBDS/RIDL/ZombieLoad) (MLPDS/RIDL) (MSBDS/Fallout) (Meltdown) (POODLE) (Spectre)NessusOracleVM Local Security Checks
critical
111992OracleVM 3.4 : xen (OVMSA-2018-0248) (Bunker Buster) (Foreshadow) (Meltdown) (POODLE) (Spectre)NessusOracleVM Local Security Checks
critical
103910GLSA-201710-17 : Xen: Multiple vulnerabilitiesNessusGentoo Local Security Checks
critical
103830OracleVM 3.4 : xen (OVMSA-2017-0153)NessusOracleVM Local Security Checks
critical
103791Debian DLA-1132-1 : xen security updateNessusDebian Local Security Checks
critical
103146Debian DSA-3969-1 : xen - security updateNessusDebian Local Security Checks
critical
102835OracleVM 3.4 : xen (OVMSA-2017-0142)NessusOracleVM Local Security Checks
critical
101638Fedora 26 : xen (2017-5c6a9b07a3)NessusFedora Local Security Checks
critical
101350SUSE SLES12 Security Update : xen (SUSE-SU-2017:1812-1)NessusSuSE Local Security Checks
critical
101349openSUSE Security Update : xen (openSUSE-2017-799)NessusSuSE Local Security Checks
critical
101293SUSE SLES12 Security Update : xen (SUSE-SU-2017:1795-1)NessusSuSE Local Security Checks
critical
101205Citrix XenServer Multiple Vulnerabilities (CTX224740)NessusMisc.
critical
101183Fedora 24 : xen (2017-b3bdaf58bc)NessusFedora Local Security Checks
critical
101028Fedora 25 : xen (2017-c3149b5fcb)NessusFedora Local Security Checks
critical