CVE-2015-2751: High severity xen xapi vulnerability
Xen 4.3.x, 4.4.x, and 4.5.x, when using toolstack disaggregation, allows remote domains with partial management control to cause a denial of service (host lock) via unspecified domctl operations.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-2751?
CVE-2015-2751 is classified as a medium severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2015-2751?
To mitigate CVE-2015-2751, users should upgrade to a version of Xen that is not affected by this vulnerability, such as Xen 4.6.x or later.
What impact does CVE-2015-2751 have on affected systems?
CVE-2015-2751 can lead to a denial of service by allowing remote domains to lock the host through specific operations.
Which versions of Xen are vulnerable to CVE-2015-2751?
CVE-2015-2751 affects Xen versions from 4.3.x to 4.5.x, including specific versions like 4.3.0, 4.4.0, and others.
Is CVE-2015-2751 specific to certain operating systems?
CVE-2015-2751 primarily affects the Xen hypervisor and has implications for operating systems that use this virtualization technology, such as Fedora.