ALPINE-CVE-2017-17566 PUBLISHED CVSS 7.800000190734863 HIGH

An issue was discovered in Xen through 4.9.x allowing PV guest OS users to cause a denial of service (host OS crash) or gain host OS privileges in shadow mode by mapping a certain auxiliary page.

Risk Scores

CVSS v3.0
7.800000190734863
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

Affected Products

VendorProductVersions
Alpine:v3.6xen4.2.0-r0, 0, 4.3.0-r7
Alpine:v3.4xen4.3.1-r2, 4.0.1-r0, 4.0.1-r1
Alpine:v3.5xen4.7.3-r4, 4.7.3-r3, 4.7.3-r2

Timeline

References

Open in Interactive Console →