2.1 Low
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:L/AC:L/Au:N/C:N/I:N/A:P
6.5 Medium
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
0.001 Low
EPSS
Percentile
26.7%
An issue was discovered in Xen through 4.10.x. One of the fixes in XSA-260
added some safety checks to help prevent Xen livelocking with debug
exceptions. Unfortunately, due to an oversight, at least one of these
safety checks can be triggered by a guest. A malicious PV guest can crash
Xen, leading to a Denial of Service. All Xen systems which have applied the
XSA-260 fix are vulnerable. Only x86 systems are vulnerable. ARM systems
are not vulnerable. Only x86 PV guests can exploit the vulnerability. x86
HVM and PVH guests cannot exploit the vulnerability. An attacker needs to
be able to control hardware debugging facilities to exploit the
vulnerability, but such permissions are typically available to unprivileged
users.
Author | Note |
---|---|
mdeslaur | hypervisor packages are in universe. For issues in the hypervisor, add appropriate tags to each section, ex: Tags_xen: universe-binary |
2.1 Low
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:L/AC:L/Au:N/C:N/I:N/A:P
6.5 Medium
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
0.001 Low
EPSS
Percentile
26.7%