Description
An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the host OS (or an arbitrary guest OS) because intercepted I/O operations can cause a write of data from uninitialized hypervisor stack memory.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-1181-1 | xen security update |
Debian DLA |
DLA-1549-1 | xen security update |
Debian DSA |
DSA-4050-1 | xen security update |
EUVD |
EUVD-2017-7041 | An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the host OS (or an arbitrary guest OS) because intercepted I/O operations can cause a write of data from uninitialized hypervisor stack memory. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T19:57:27.470Z
Reserved: 2017-10-18T00:00:00.000Z
Link: CVE-2017-15589
No data.
Status : Modified
Published: 2017-10-18T08:29:00.373
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-15589
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Debian DSA
EUVD