Lucene search

K
nvd[email protected]NVD:CVE-2015-3259
HistoryJul 16, 2015 - 2:59 p.m.

CVE-2015-3259

2015-07-1614:59:01
CWE-264
web.nvd.nist.gov
1

6.8 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

9.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

30.2%

Stack-based buffer overflow in the xl command line utility in Xen 4.1.x through 4.5.x allows local guest administrators to gain privileges via a long configuration argument.

Affected configurations

NVD
Node
xenxenMatch4.1.0
OR
xenxenMatch4.1.1
OR
xenxenMatch4.1.2
OR
xenxenMatch4.1.3
OR
xenxenMatch4.1.4
OR
xenxenMatch4.1.5
OR
xenxenMatch4.1.6.1
OR
xenxenMatch4.2.0
OR
xenxenMatch4.2.1
OR
xenxenMatch4.2.2
OR
xenxenMatch4.2.3
OR
xenxenMatch4.3.0
OR
xenxenMatch4.3.1
OR
xenxenMatch4.3.4
OR
xenxenMatch4.4.0
OR
xenxenMatch4.4.0rc1
OR
xenxenMatch4.4.1
OR
xenxenMatch4.4.2
OR
xenxenMatch4.5.0

6.8 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

9.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

30.2%