Your submission was sent successfully! Close

CVE-2015-2752

Published: 1 April 2015

The XEN_DOMCTL_memory_mapping hypercall in Xen 3.2.x through 4.5.x, when using a PCI passthrough device, is not preemptible, which allows local x86 HVM domain users to cause a denial of service (host CPU consumption) via a crafted request to the device model (qemu-dm).

Priority

Medium

Status

Package Release Status
xen
Launchpad, Ubuntu, Debian
lucid Does not exist

precise
Released (4.1.6.1-0ubuntu0.12.04.6)
trusty Does not exist
(trusty was released [4.4.1-0ubuntu0.14.04.5])
upstream Needs triage

utopic
Released (4.4.1-0ubuntu0.14.10.5)
vivid
Released (4.5.0-1ubuntu4)
wily
Released (4.5.0-1ubuntu4)
Binaries built from this source package are in Universe and so are supported by the community.
xen-3.3
Launchpad, Ubuntu, Debian
lucid Ignored
(reached end-of-life)
precise Does not exist

trusty Does not exist

upstream Ignored
(reached end-of-life)
utopic Does not exist

vivid Does not exist

wily Does not exist

Binaries built from this source package are in Universe and so are supported by the community.