Lucene search

K
prionPRIOn knowledge basePRION:CVE-2015-8338
HistoryDec 17, 2015 - 7:59 p.m.

Code injection

2015-12-1719:59:00
PRIOn knowledge base
www.prio-n.com
4

7.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.1%

Xen 4.6.x and earlier does not properly enforce limits on page order inputs for the (1) XENMEM_increase_reservation, (2) XENMEM_populate_physmap, (3) XENMEM_exchange, and possibly other HYPERVISOR_memory_op suboperations, which allows ARM guest OS administrators to cause a denial of service (CPU consumption, guest reboot, or watchdog timeout and host reboot) and possibly have unspecified other impact via unknown vectors.

CPENameOperatorVersion
xenle4.6.0

7.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.1%