First published: Fri Oct 30 2015(Updated: )
Race condition in the relinquish_memory function in arch/arm/domain.c in Xen 4.6.x and earlier allows local domains with partial management control to cause a denial of service (host crash) via vectors involving the destruction of a domain and using XENMEM_decrease_reservation to reduce the memory of the domain.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xen xen-unstable | <=4.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-7814 is classified as a moderate severity vulnerability due to its potential for denial of service through host crashes.
To fix CVE-2015-7814, users should upgrade to Xen versions higher than 4.6.0, as the issue has been addressed in subsequent releases.
CVE-2015-7814 affects Xen versions 4.6.x and earlier, specifically those operating on ARM architecture.
CVE-2015-7814 is a race condition vulnerability occurring in the relinquish_memory function of the Xen hypervisor.
While CVE-2015-7814 primarily causes denial of service, it does not directly lead to data breaches, but can disrupt service availability.