Lucene search

K
cveMitreCVE-2015-8341
HistoryDec 17, 2015 - 7:59 p.m.

CVE-2015-8341

2015-12-1719:59:09
CWE-399
mitre
web.nvd.nist.gov
48
cve-2015-8341
xen
libxl toolstack library
denial of service
memory consumption
disk consumption
nvd

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

8.1

Confidence

High

EPSS

0.004

Percentile

73.2%

The libxl toolstack library in Xen 4.1.x through 4.6.x does not properly release mappings of files used as kernels and initial ramdisks when managing multiple domains in the same process, which allows attackers to cause a denial of service (memory and disk consumption) by starting domains.

Affected configurations

Nvd
Node
xenxenMatch4.1.0
OR
xenxenMatch4.1.1
OR
xenxenMatch4.1.2
OR
xenxenMatch4.1.3
OR
xenxenMatch4.1.4
OR
xenxenMatch4.1.5
OR
xenxenMatch4.1.6
OR
xenxenMatch4.1.6.1
OR
xenxenMatch4.2.0
OR
xenxenMatch4.2.1
OR
xenxenMatch4.2.2
OR
xenxenMatch4.2.3
OR
xenxenMatch4.2.4
OR
xenxenMatch4.2.5
OR
xenxenMatch4.3.0
OR
xenxenMatch4.3.1
OR
xenxenMatch4.3.2
OR
xenxenMatch4.3.3
OR
xenxenMatch4.3.4
OR
xenxenMatch4.4.0
OR
xenxenMatch4.4.1
OR
xenxenMatch4.4.2
OR
xenxenMatch4.4.3
OR
xenxenMatch4.5.0
OR
xenxenMatch4.5.1
OR
xenxenMatch4.5.2
OR
xenxenMatch4.6.0
VendorProductVersionCPE
xenxen4.1.0cpe:2.3:o:xen:xen:4.1.0:*:*:*:*:*:*:*
xenxen4.1.1cpe:2.3:o:xen:xen:4.1.1:*:*:*:*:*:*:*
xenxen4.1.2cpe:2.3:o:xen:xen:4.1.2:*:*:*:*:*:*:*
xenxen4.1.3cpe:2.3:o:xen:xen:4.1.3:*:*:*:*:*:*:*
xenxen4.1.4cpe:2.3:o:xen:xen:4.1.4:*:*:*:*:*:*:*
xenxen4.1.5cpe:2.3:o:xen:xen:4.1.5:*:*:*:*:*:*:*
xenxen4.1.6cpe:2.3:o:xen:xen:4.1.6:*:*:*:*:*:*:*
xenxen4.1.6.1cpe:2.3:o:xen:xen:4.1.6.1:*:*:*:*:*:*:*
xenxen4.2.0cpe:2.3:o:xen:xen:4.2.0:*:*:*:*:*:*:*
xenxen4.2.1cpe:2.3:o:xen:xen:4.2.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 271

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

8.1

Confidence

High

EPSS

0.004

Percentile

73.2%