Lucene search

K
nvd[email protected]NVD:CVE-2015-5307
HistoryNov 16, 2015 - 11:59 a.m.

CVE-2015-5307

2015-11-1611:59:05
CWE-399
web.nvd.nist.gov
6

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

31.8%

The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic or hang) by triggering many #AC (aka Alignment Check) exceptions, related to svm.c and vmx.c.

Affected configurations

Nvd
Node
linuxlinux_kernelRange4.2.3
Node
xenxenMatch4.3.0
OR
xenxenMatch4.3.1
OR
xenxenMatch4.3.2
OR
xenxenMatch4.3.3
OR
xenxenMatch4.3.4
OR
xenxenMatch4.4.0
OR
xenxenMatch4.4.1
OR
xenxenMatch4.4.2
OR
xenxenMatch4.4.3
OR
xenxenMatch4.4.4
OR
xenxenMatch4.5.0
OR
xenxenMatch4.5.1
OR
xenxenMatch4.5.2
OR
xenxenMatch4.5.3
OR
xenxenMatch4.5.5
OR
xenxenMatch4.6.0
OR
xenxenMatch4.6.1
OR
xenxenMatch4.6.2
OR
xenxenMatch4.6.3
OR
xenxenMatch4.6.4
OR
xenxenMatch4.6.5
OR
xenxenMatch4.6.6
Node
oraclevm_virtualboxRange4.0.04.0.34
OR
oraclevm_virtualboxRange4.1.04.1.42
OR
oraclevm_virtualboxRange4.2.04.2.34
OR
oraclevm_virtualboxRange4.3.04.3.29
OR
oraclevm_virtualboxRange5.0.05.0.8
Node
debiandebian_linuxMatch7.0
OR
debiandebian_linuxMatch8.0
Node
canonicalubuntu_linuxMatch12.04lts
OR
canonicalubuntu_linuxMatch14.04lts
OR
canonicalubuntu_linuxMatch15.10
VendorProductVersionCPE
linuxlinux_kernel*cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
xenxen4.3.0cpe:2.3:o:xen:xen:4.3.0:*:*:*:*:*:*:*
xenxen4.3.1cpe:2.3:o:xen:xen:4.3.1:*:*:*:*:*:*:*
xenxen4.3.2cpe:2.3:o:xen:xen:4.3.2:*:*:*:*:*:*:*
xenxen4.3.3cpe:2.3:o:xen:xen:4.3.3:*:*:*:*:*:*:*
xenxen4.3.4cpe:2.3:o:xen:xen:4.3.4:*:*:*:*:*:*:*
xenxen4.4.0cpe:2.3:o:xen:xen:4.4.0:*:*:*:*:*:*:*
xenxen4.4.1cpe:2.3:o:xen:xen:4.4.1:*:*:*:*:*:*:*
xenxen4.4.2cpe:2.3:o:xen:xen:4.4.2:*:*:*:*:*:*:*
xenxen4.4.3cpe:2.3:o:xen:xen:4.4.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 291

References

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

AI Score

6.2

Confidence

High

EPSS

0.001

Percentile

31.8%