ZeroHour

CVE-2017-12136

CVSS 3.0
7.8 high
EPSS
<1%p24
Published
()
Modified
Description

Race condition in the grant table code in Xen 4.6.x through 4.9.x allows local guest OS administrators to cause a denial of service (free list corruption and host crash) or gain privileges on the host via vectors involving maptrack free list handling.

Vendors
xencitrixdebian
Products
xen, xenserver, debian linux
Weakness
CWE-362
Vector
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.