[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4369-1 xen -- xen

ID: oval:org.secpod.oval:def:603608Date: (C)2019-01-16   (M)2023-11-13
Class: PATCHFamily: unix




Multiple vulnerabilities have been discovered in the Xen hypervisor: CVE-2018-19961 / CVE-2018-19962 Paul Durrant discovered that incorrect TLB handling could result in denial of service, privilege escalation or information leaks. CVE-2018-19965 Matthew Daley discovered that incorrect handling of the INVPCID instruction could result in denial of service by PV guests. CVE-2018-19966 It was discovered that a regression in the fix to address CVE-2017-15595 could result in denial of service, privilege escalation or information leaks by a PV guest. CVE-2018-19967 It was discovered that an error in some Intel CPUs could result in denial of service by a guest instance.

Platform:
Debian 9.x
Product:
xen-hypervisor-4.8-amd64
libxen-dev
xen-hypervisor-4.8-arm64
xen-hypervisor-4.8-armhf
xen-system-armhf
xen-utils-4.8
xen-system-arm64
libxen-4.8
libxenstore3.0
xen-utils-common
xen-system-amd64
xenstore-utils
Reference:
DSA-4369-1
CVE-2018-19961
CVE-2018-19962
CVE-2018-19965
CVE-2018-19966
CVE-2018-19967
CVE    5
CVE-2018-19961
CVE-2018-19967
CVE-2018-19966
CVE-2018-19965
...
CPE    3
cpe:/o:debian:debian_linux:9.0
cpe:/a:xen:xen-utils-4.8
cpe:/o:debian:debian_linux:9.x

© SecPod Technologies