CVE-2015-5307

CVSS v2.0 4.9 (Medium)
49% Progress
EPSS 0.07 % (33th)
0.07% Progress
Affected Products 5
Advisories 37

The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic or hang) by triggering many #AC (aka Alignment Check) exceptions, related to svm.c and vmx.c.

Weaknesses
CWE-399
Resource Management Errors
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2015-11-16 11:59:05
(8 years ago)
Updated Date
2023-02-12 23:15:35
(19 months ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel 4.2.3 and prior versions cpe:2.3:o:linux:linux_kernel <= 4.2.3

Configuration #2

    CPE23 From Up To
  Xen 4.3.0 cpe:2.3:o:xen:xen:4.3.0
  Xen 4.3.1 cpe:2.3:o:xen:xen:4.3.1
  Xen 4.3.2 cpe:2.3:o:xen:xen:4.3.2
  Xen 4.3.3 cpe:2.3:o:xen:xen:4.3.3
  Xen 4.3.4 cpe:2.3:o:xen:xen:4.3.4
  Xen 4.4.0 cpe:2.3:o:xen:xen:4.4.0
  Xen 4.4.1 cpe:2.3:o:xen:xen:4.4.1
  Xen 4.4.2 cpe:2.3:o:xen:xen:4.4.2
  Xen 4.4.3 cpe:2.3:o:xen:xen:4.4.3
  Xen 4.4.4 cpe:2.3:o:xen:xen:4.4.4
  Xen 4.5.0 cpe:2.3:o:xen:xen:4.5.0
  Xen 4.5.1 cpe:2.3:o:xen:xen:4.5.1
  Xen 4.5.2 cpe:2.3:o:xen:xen:4.5.2
  Xen 4.5.3 cpe:2.3:o:xen:xen:4.5.3
  Xen 4.5.5 cpe:2.3:o:xen:xen:4.5.5
  Xen 4.6.0 cpe:2.3:o:xen:xen:4.6.0
  Xen 4.6.1 cpe:2.3:o:xen:xen:4.6.1
  Xen 4.6.2 cpe:2.3:o:xen:xen:4.6.2
  Xen 4.6.3 cpe:2.3:o:xen:xen:4.6.3
  Xen 4.6.4 cpe:2.3:o:xen:xen:4.6.4
  Xen 4.6.5 cpe:2.3:o:xen:xen:4.6.5
  Xen 4.6.6 cpe:2.3:o:xen:xen:4.6.6

Configuration #3

    CPE23 From Up To
  Oracle Vm Virtualbox from 4.0.0 version and 4.0.34 and prior versions cpe:2.3:a:oracle:vm_virtualbox >= 4.0.0 <= 4.0.34
  Oracle Vm Virtualbox from 4.1.0 version and 4.1.42 and prior versions cpe:2.3:a:oracle:vm_virtualbox >= 4.1.0 <= 4.1.42
  Oracle Vm Virtualbox from 4.2.0 version and 4.2.34 and prior versions cpe:2.3:a:oracle:vm_virtualbox >= 4.2.0 <= 4.2.34
  Oracle Vm Virtualbox from 4.3.0 version and 4.3.29 and prior versions cpe:2.3:a:oracle:vm_virtualbox >= 4.3.0 <= 4.3.29
  Oracle Vm Virtualbox from 5.0.0 version and 5.0.8 and prior versions cpe:2.3:a:oracle:vm_virtualbox >= 5.0.0 <= 5.0.8

Configuration #4

    CPE23 From Up To
  Debian Linux 7.0 cpe:2.3:o:debian:debian_linux:7.0
  Debian Linux 8.0 cpe:2.3:o:debian:debian_linux:8.0

Configuration #5

    CPE23 From Up To
  Canonical Ubuntu Linux 12.04 cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:lts
  Canonical Ubuntu Linux 14.04 cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts
  Canonical Ubuntu Linux 15.10 cpe:2.3:o:canonical:ubuntu_linux:15.10
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...