CVE-2015-3340
Publication date 28 April 2015
Last updated 24 July 2024
Ubuntu priority
Xen 4.2.x through 4.5.x does not initialize certain fields, which allows certain remote service domains to obtain sensitive information from memory via a (1) XEN_DOMCTL_gettscinfo or (2) XEN_SYSCTL_getdomaininfolist request.
Status
Package | Ubuntu Release | Status |
---|---|---|
xen | ||
14.04 LTS trusty |
Fixed 4.4.1-0ubuntu0.14.04.6
|
|
xen-3.3 | ||
14.04 LTS trusty | Not in release | |