CVE-2017-15589
medium
CVSS v3
6.5
CVSS v2
2.1
VIR risk
6.5
Description
An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the host OS (or an arbitrary guest OS) because intercepted I/O operations can cause a write of data from uninitialized hypervisor stack memory.
Predictions
Exploit likelihood
65%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2017-15589
Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2017-15589.html
Vendor advisory: cve@mitre.org — https://xenbits.xen.org/xsa/advisory-239.html
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| sles | affected | | |
| debian | bookworm | fixed | 4.8.2+xsa245-0+deb9u1 |
| debian | bullseye | fixed | 4.8.2+xsa245-0+deb9u1 |
| debian | forky | fixed | 4.8.2+xsa245-0+deb9u1 |
| debian | sid | fixed | 4.8.2+xsa245-0+deb9u1 |
| debian | trixie | fixed | 4.8.2+xsa245-0+deb9u1 |
References
- http://www.securityfocus.com/bid/101496
- http://www.securitytracker.com/id/1039568
- https://lists.debian.org/debian-lts-announce/2017/11/msg00027.html
- https://lists.debian.org/debian-lts-announce/2018/10/msg00009.html
- https://security.gentoo.org/glsa/201801-14
- https://support.citrix.com/article/CTX228867
- https://www.debian.org/security/2017/dsa-4050
- https://xenbits.xen.org/xsa/advisory-239.html
- https://www.suse.com/security/cve/CVE-2017-15589.html
- https://security-tracker.debian.org/tracker/CVE-2017-15589
CWEs
CWE-200
Verify integrity in audit chain (admin only). AS-IS.