VYPR

rpm package

opensuse/xen&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/xen&distro=openSUSE%20Tumbleweed

Vulnerabilities (294)

  • CVE-2018-7541HigFeb 27, 2018
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    An issue was discovered in Xen through 4.10.x allowing guest OS users to cause a denial of service (hypervisor crash) or gain privileges by triggering a grant-table transition from v2 to v1.

  • CVE-2018-7540MedFeb 27, 2018
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    An issue was discovered in Xen through 4.10.x allowing x86 PV guest OS users to cause a denial of service (host OS CPU hang) via non-preemptable L3/L4 pagetable freeing.

  • CVE-2018-5244MedJan 5, 2018
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    In Xen 4.10, new infrastructure was introduced as part of an overhaul to how MSR emulation happens for guests. Unfortunately, one tracking structure isn't freed when a vcpu is destroyed. This allows guest OS administrators to cause a denial of service (host OS memory consumption)

  • CVE-2017-5753MedJan 4, 2018
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.

  • CVE-2015-7549MedOct 30, 2017
    affected < 4.7.0_12-1.3fixed 4.7.0_12-1.3

    The MSI-X MMIO support in hw/pci/msix.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (NULL pointer dereference and QEMU process crash) by leveraging failure to define the .write method.

  • CVE-2015-7504HigOct 16, 2017
    affected < 4.7.0_12-1.3fixed 4.7.0_12-1.3

    Heap-based buffer overflow in the pcnet_receive function in hw/net/pcnet.c in QEMU allows guest OS administrators to cause a denial of service (instance crash) or possibly execute arbitrary code via a series of packets in loopback mode.

  • CVE-2017-12137HigAug 24, 2017
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    arch/x86/mm.c in Xen allows local PV guest OS users to gain host OS privileges via vectors related to map_grant_ref.

  • CVE-2017-12136HigAug 24, 2017
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    Race condition in the grant table code in Xen 4.6.x through 4.9.x allows local guest OS administrators to cause a denial of service (free list corruption and host crash) or gain privileges on the host via vectors involving maptrack free list handling.

  • CVE-2017-12135HigAug 24, 2017
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    Xen allows local OS guest users to cause a denial of service (crash) or possibly obtain sensitive information or gain privileges via vectors involving transitive grants.

  • CVE-2017-9330MedJun 8, 2017
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    QEMU (aka Quick Emulator) before 2.9.0, when built with the USB OHCI Emulation support, allows local guest OS users to cause a denial of service (infinite loop) by leveraging an incorrect return value, a different vulnerability than CVE-2017-6505.

  • CVE-2017-8309HigMay 23, 2017
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    Memory leak in the audio/audio.c in QEMU (aka Quick Emulator) allows remote attackers to cause a denial of service (memory consumption) by repeatedly starting and stopping audio capture.

  • CVE-2015-8619HigApr 13, 2017
    affected < 4.7.0_12-1.3fixed 4.7.0_12-1.3

    The Human Monitor Interface support in QEMU allows remote attackers to cause a denial of service (out-of-bounds write and application crash).

  • CVE-2015-8567HigApr 13, 2017
    affected < 4.7.0_12-1.3fixed 4.7.0_12-1.3

    Memory leak in net/vmxnet3.c in QEMU allows remote attackers to cause a denial of service (memory consumption).

  • CVE-2015-8345MedApr 13, 2017
    affected < 4.7.0_12-1.3fixed 4.7.0_12-1.3

    The eepro100 emulator in QEMU qemu-kvm blank allows local guest users to cause a denial of service (application crash and infinite loop) via vectors involving the command block list.

  • CVE-2015-8613MedApr 11, 2017
    affected < 4.7.0_12-1.3fixed 4.7.0_12-1.3

    Stack-based buffer overflow in the megasas_ctrl_get_info function in QEMU, when built with SCSI MegaRAID SAS HBA emulation support, allows local guest users to cause a denial of service (QEMU instance crash) via a crafted SCSI controller CTRL_GET_INFO command.

  • CVE-2015-8568MedApr 11, 2017
    affected < 4.7.0_12-1.3fixed 4.7.0_12-1.3

    Memory leak in QEMU, when built with a VMWARE VMXNET3 paravirtual NIC emulator support, allows local guest users to cause a denial of service (host memory consumption) by trying to activate the vmxnet3 device repeatedly.

  • CVE-2015-8504MedApr 11, 2017
    affected < 4.7.0_12-1.3fixed 4.7.0_12-1.3

    Qemu, when built with VNC display driver support, allows remote attackers to cause a denial of service (arithmetic exception and application crash) via crafted SetPixelFormat messages from a client.

  • CVE-2017-6505MedMar 15, 2017
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    The ohci_service_ed_list function in hw/usb/hcd-ohci.c in QEMU (aka Quick Emulator) before 2.9.0 allows local guest OS users to cause a denial of service (infinite loop) via vectors involving the number of link endpoint list descriptors, a different vulnerability than CVE-2017-93

  • CVE-2016-9384MedFeb 22, 2017
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    Xen 4.7 allows local guest OS users to obtain sensitive host information by loading a 32-bit ELF symbol table.

  • CVE-2016-9377MedFeb 22, 2017
    affected < 4.15.1_01-1.2fixed 4.15.1_01-1.2

    Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest crash) by leveraging IDT entry miscalculation.

Page 8 of 15