4.6
CVSSv2

CVE-2017-12135

Published: 24/08/2017 Updated: 14/04/2020
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 8.8 | Impact Score: 6 | Exploitability Score: 2
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Xen allows local OS guest users to cause a denial of service (crash) or possibly obtain sensitive information or gain privileges via vectors involving transitive grants.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

xen xen

citrix xenserver 7.1

citrix xenserver 7.2

citrix xenserver 6.0.2

citrix xenserver 7.0

citrix xenserver 6.2.0

citrix xenserver 6.5

debian debian linux 9.0

debian debian linux 8.0

Vendor Advisories

Xen allows local OS guest users to cause a denial of service (crash) or possibly obtain sensitive information or gain privileges via vectors involving transitive grants ...
Description of Problem A number of security vulnerabilities have been identified in Citrix XenServer that may allow a malicious administrator of a guest VM to compromise the host These vulnerabilities affect all currently supported versions of Citrix XenServer up to and including Citrix XenServer 72 The following vulnerabilities have been addres ...