UBUNTU-CVE-2015-7969
Dashboard / Vulnerabilities / UBUNTU-CVE-2015-7969
Summary:
Details: Multiple memory leaks in Xen 4.0 through 4.6.x allow local guest administrators or domains with certain permission to cause a denial of service (memory consumption) via a large number of "teardowns" of domains with the vcpu pointer array allocated using the (1) XEN_DOMCTL_max_vcpus hypercall or the xenoprofile state vcpu pointer array allocated using the (2) XENOPROF_get_buffer or (3) XENOPROF_set_passive hypercall.
References: https://ubuntu.com/security/CVE-2015-7969, http://xenbits.xen.org/xsa/advisory-149.html, http://xenbits.xen.org/xsa/advisory-151.html, https://www.cve.org/CVERecord?id=CVE-2015-7969
Affected packages
Package
Name: xen
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
