7.8
CVSSv2

CVE-2015-0361

Published: 07/01/2015 Updated: 30/10/2018
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Use-after-free vulnerability in Xen 4.2.x, 4.3.x, and 4.4.x allows remote domains to cause a denial of service (system crash) via a crafted hypercall during HVM guest teardown.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

xen xen 4.3.1

xen xen 4.3.2

xen xen 4.2.3

xen xen 4.2.4

xen xen 4.4.1

xen xen 4.2.5

xen xen 4.3.0

xen xen 4.2.0

xen xen 4.2.1

xen xen 4.2.2

xen xen 4.3.3

xen xen 4.4.0

opensuse opensuse 13.2

opensuse opensuse 13.1

Vendor Advisories

Debian Bug report logs - #776319 xen: CVE-2015-0361 CVE-2015-1563 Package: src:xen; Maintainer for src:xen is Debian Xen Team <pkg-xen-devel@listsaliothdebianorg>; Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Mon, 26 Jan 2015 19:57:01 UTC Severity: important Tags: fixed-upstream, security, upstream Foun ...
Use-after-free vulnerability in Xen 42x, 43x, and 44x allows remote domains to cause a denial of service (system crash) via a crafted hypercall during HVM guest teardown ...