VDB
ALPINE-CVE-2017-15596
ALPINE-CVE-2017-15596
PUBLISHED
CVSS 6 MEDIUM
An issue was discovered in Xen 4.4.x through 4.9.x allowing ARM guest OS users to cause a denial of service (prevent physical CPU usage) because of lock mishandling upon detection of an add-to-physmap error.
Risk Scores
CVSS v3.0
6
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Alpine:v3.5 | xen | 4.1.0-r0, 4.2.0-r7, 4.2.1-r1 |
| Alpine:v3.6 | xen | 4.1.2-r5, 4.0.1-r0, 4.0.1-r2 |
| Alpine:v3.4 | xen | 0, 4.0.1-r1, 4.0.1-r3 |
Timeline
- Oct 18, 2017 CVE Published
- Nov 19, 2025 CVE Updated
- Apr 30, 2026 Distribution Patch