CVE-2015-1563: Low severity xen xapi vulnerability
Published Feb 9, 2015
·Updated
The ARM GIC distributor virtualization in Xen 4.4.x and 4.5.x allows local guests to cause a denial of service by causing a large number messages to be logged.
Affected Software
23 affected components
XEN Xen=4.0.0
XEN Xen=4.0.1
XEN Xen=4.0.2
XEN Xen=4.0.3
XEN Xen=4.0.4
XEN Xen=4.1.0
XEN Xen=4.1.1
XEN Xen=4.1.2
XEN Xen=4.1.3
XEN Xen=4.1.4
XEN Xen=4.1.5
XEN Xen=4.1.6.1
XEN Xen=4.2.0
XEN Xen=4.2.1
XEN Xen=4.2.2
XEN Xen=4.2.3
XEN Xen=4.3.0
XEN Xen=4.3.1
XEN Xen=4.4.0
XEN Xen=4.4.0-rc1
XEN Xen=4.4.1
XEN Xen=4.5.0
Fedoraproject Fedora=21
Event History
Feb 9, 2015
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-1563?
CVE-2015-1563 has a severity rating that indicates it allows local guests to cause denial of service on the ARM GIC distributor in Xen.
2
How do I fix CVE-2015-1563?
To fix CVE-2015-1563, you should upgrade to a version of Xen that has patched this vulnerability.
3
Which versions of Xen are affected by CVE-2015-1563?
CVE-2015-1563 affects Xen versions 4.4.x and 4.5.x.
4
Can CVE-2015-1563 be exploited remotely?
No, CVE-2015-1563 is a local vulnerability which requires access to the guest operating system.
5
What are the potential impacts of CVE-2015-1563?
The potential impact of CVE-2015-1563 is a denial of service, which can disrupt the availability of services hosted on the affected Xen hypervisor.