9
CVSSv2

CVE-2017-15597

Published: 30/10/2017 Updated: 03/10/2019
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
CVSS v3 Base Score: 9.1 | Impact Score: 6 | Exploitability Score: 2.3
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

An issue exists in Xen up to and including 4.9.x. Grant copying code made an implication that any grant pin would be accompanied by a suitable page reference. Other portions of code, however, did not match up with that assumption. When such a grant copy operation is being done on a grant of a dying domain, the assumption turns out wrong. A malicious guest administrator can cause hypervisor memory corruption, most likely resulting in host crash and a Denial of Service. Privilege escalation and information leaks cannot be ruled out.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

xen xen

Vendor Advisories

An issue was discovered in Xen through 49x Grant copying code made an implication that any grant pin would be accompanied by a suitable page reference Other portions of code, however, did not match up with that assumption When such a grant copy operation is being done on a grant of a dying domain, the assumption turns out wrong A malicious gu ...
Description of Problem A security vulnerability has been identified in Citrix XenServer that may allow a malicious administrator of a guest VM to compromise the host This vulnerability affects all currently supported versions of Citrix XenServer up to and including Citrix XenServer 72 The following vulnerability has been addressed: CVE-2017-1559 ...