CVE-2015-8341

Publication date 17 December 2015

Last updated 24 July 2024


Ubuntu priority

The libxl toolstack library in Xen 4.1.x through 4.6.x does not properly release mappings of files used as kernels and initial ramdisks when managing multiple domains in the same process, which allows attackers to cause a denial of service (memory and disk consumption) by starting domains.

Status

Package Ubuntu Release Status
xen 15.10 wily
Fixed 4.5.1-0ubuntu1.2
15.04 vivid
Fixed 4.5.0-1ubuntu4.4
14.04 LTS trusty
Fixed 4.4.2-0ubuntu0.14.04.4
12.04 LTS precise
Not affected

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
xen