VDB

DEBIAN-CVE-2015-4103

DEBIAN-CVE-2015-4103 PUBLISHED CVSS 6.900000095367432 MEDIUM

Xen 3.3.x through 4.5.x does not properly restrict write access to the host MSI message data field, which allows local x86 HVM guest administrators to cause a denial of service (host interrupt handling confusion) via vectors related to qemu and accessing spanning multiple fields.

Risk Scores

CVSS v4.0
6.900000095367432
CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N

Affected Products

VendorProductVersions
Debian:11qemu0, 0, 0
Debian:12xen0, 0, 0
Debian:14qemu0, 0, 0
Debian:14xen0, 0, 0
Debian:13xen0, 0, 0
Debian:12qemu0, 0, 0
Debian:13qemu0, 0, 0
Debian:11xen0, 0, 0

Timeline

  • Jun 3, 2015 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›