Xen Multiple Vulnerabilities
Last Update Date:
29 Jun 2018 14:51
Release Date:
29 Jun 2018
4484
Views
RISK: Medium Risk
TYPE: Operating Systems - VM Ware
Multiple vulnerabilities have been identified in Xen, a remote attacker can exploit these vulnerabilities to trigger denial of service condition and security restriction bypass on the targeted system.
Impact
- Denial of Service
- Security Restriction Bypass
System / Technologies affected
- xen jessie (security) 4.4.1-9+deb8u10
- xen jessie 4.4.1-9+deb8u10
- xen buster 4.8.3+comet2+shim4.10.0+comet3-1+deb9u5
- xen sid 4.8.3+comet2+shim4.10.0+comet3-1+deb9u5
- xen stretch 4.8.3+comet2+shim4.10.0+comet3-1+deb9u5
- XenServer 7.5
- XenServer 7.4
- XenServer 7.3
- XenServer 7.2
- XenServer 7.1 LTSR Cumulative Update 1
- XenServer 7.0
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- For the stable distribution (stretch), these problems have been fixed in version 4.8.3+xsa267+shim4.10.1+xsa267-1+deb9u9.
- For the XenServer, please refer to: https://support.citrix.com/article/CTX235748
Vulnerability Identifier
Source
Related Link
Share with