Upstream information
Description
Xen 4.3.x writes hypervisor mappings to certain shadow pagetables when live migration is performed on hosts with more than 5TB of RAM, which allows local 64-bit PV guests to read or write to invalid memory and cause a denial of service (crash).SUSE information
Overall state of this security issue: Does not affect SUSE products
This issue is currently rated as having important severity.
National Vulnerability Database | |
---|---|
Base Score | 5.4 |
Vector | AV:A/AC:M/Au:N/C:P/I:P/A:P |
Access Vector | Adjacent Network |
Access Complexity | Medium |
Authentication | None |
Confidentiality Impact | Partial |
Integrity Impact | Partial |
Availability Impact | Partial |
List of released packages
Product(s) | Fixed package version(s) | References |
---|---|---|
SUSE Linux Enterprise Desktop 12 SP1 |
| |
SUSE Linux Enterprise Desktop 12 SP2 |
| |
SUSE Linux Enterprise Desktop 12 SP3 |
| |
SUSE Linux Enterprise Desktop 12 SP4 |
| |
SUSE Linux Enterprise Desktop 12 |
| |
SUSE Linux Enterprise High Performance Computing 12 SP5 SUSE Linux Enterprise Server 12 SP5 |
| |
SUSE Linux Enterprise Module for Basesystem 15 |
| |
SUSE Linux Enterprise Module for Server Applications 15 |
| |
SUSE Linux Enterprise Server 12 SP1 |
| |
SUSE Linux Enterprise Server 12 SP2 |
| |
SUSE Linux Enterprise Server 12 SP3 |
| |
SUSE Linux Enterprise Server 12 SP4 |
| |
SUSE Linux Enterprise Server 12 |
| |
SUSE Linux Enterprise Software Development Kit 12 SP1 |
| |
SUSE Linux Enterprise Software Development Kit 12 SP2 |
| |
SUSE Linux Enterprise Software Development Kit 12 SP3 |
| |
SUSE Linux Enterprise Software Development Kit 12 SP4 |
| |
SUSE Linux Enterprise Software Development Kit 12 SP5 |
| |
SUSE Linux Enterprise Software Development Kit 12 |
| |
openSUSE Leap 15.0 |
| Patchnames: openSUSE Leap 15.0 GA xen-libs |
openSUSE Leap 42.1 |
| Patchnames: openSUSE Leap 42.1 GA xen |
openSUSE Leap 42.2 |
| Patchnames: openSUSE Leap 42.2 GA xen |
openSUSE Leap 42.3 |
| Patchnames: openSUSE Leap 42.3 GA xen |
openSUSE Tumbleweed |
| Patchnames: openSUSE Tumbleweed GA xen |