Show filters
605 Total Results
Displaying 271-280 of 605
Sort by:
Attacker Value
Unknown

CVE-2018-7540

Disclosure Date: February 27, 2018 (last updated November 26, 2024)
An issue was discovered in Xen through 4.10.x allowing x86 PV guest OS users to cause a denial of service (host OS CPU hang) via non-preemptable L3/L4 pagetable freeing.
0
Attacker Value
Unknown

CVE-2018-5244

Disclosure Date: January 05, 2018 (last updated November 26, 2024)
In Xen 4.10, new infrastructure was introduced as part of an overhaul to how MSR emulation happens for guests. Unfortunately, one tracking structure isn't freed when a vcpu is destroyed. This allows guest OS administrators to cause a denial of service (host OS memory consumption) by rebooting many times.
0
Attacker Value
Unknown

CVE-2017-17566

Disclosure Date: December 12, 2017 (last updated November 26, 2024)
An issue was discovered in Xen through 4.9.x allowing PV guest OS users to cause a denial of service (host OS crash) or gain host OS privileges in shadow mode by mapping a certain auxiliary page.
0
Attacker Value
Unknown

CVE-2017-17565

Disclosure Date: December 12, 2017 (last updated November 26, 2024)
An issue was discovered in Xen through 4.9.x allowing PV guest OS users to cause a denial of service (host OS crash) if shadow mode and log-dirty mode are in place, because of an incorrect assertion related to M2P.
0
Attacker Value
Unknown

CVE-2017-17564

Disclosure Date: December 12, 2017 (last updated November 26, 2024)
An issue was discovered in Xen through 4.9.x allowing guest OS users to cause a denial of service (host OS crash) or gain host OS privileges by leveraging incorrect error handling for reference counting in shadow mode.
0
Attacker Value
Unknown

CVE-2017-17563

Disclosure Date: December 12, 2017 (last updated November 26, 2024)
An issue was discovered in Xen through 4.9.x allowing guest OS users to cause a denial of service (host OS crash) or gain host OS privileges by leveraging an incorrect mask for reference-count overflow checking in shadow mode.
0
Attacker Value
Unknown

CVE-2017-17045

Disclosure Date: November 28, 2017 (last updated November 26, 2024)
An issue was discovered in Xen through 4.9.x allowing HVM guest OS users to gain privileges on the host OS, obtain sensitive information, or cause a denial of service (BUG and host OS crash) by leveraging the mishandling of Populate on Demand (PoD) Physical-to-Machine (P2M) errors.
0
Attacker Value
Unknown

CVE-2017-17044

Disclosure Date: November 28, 2017 (last updated November 26, 2024)
An issue was discovered in Xen through 4.9.x allowing HVM guest OS users to cause a denial of service (infinite loop and host OS hang) by leveraging the mishandling of Populate on Demand (PoD) errors.
0
Attacker Value
Unknown

CVE-2017-17046

Disclosure Date: November 28, 2017 (last updated November 26, 2024)
An issue was discovered in Xen through 4.9.x on the ARM platform allowing guest OS users to obtain sensitive information from DRAM after a reboot, because disjoint blocks, and physical addresses that do not start at zero, are mishandled.
0
Attacker Value
Unknown

CVE-2017-11400

Disclosure Date: November 20, 2017 (last updated November 26, 2024)
An issue has been discovered on the Belden Hirschmann Tofino Xenon Security Appliance before 03.2.00. An incomplete firmware signature allows a local attacker to upgrade the equipment (kernel, file system) with unsigned, attacker-controlled, data. This occurs because the appliance_config file is signed but the .tar.sec file is unsigned.
0