CVE-2017-10917 - CERT CVE
ID CVE-2017-10917
Sažetak Xen through 4.8.x does not validate the port numbers of polled event channel ports, which allows guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) or possibly obtain sensitive information, aka XSA-221.
Reference
CVSS
Base: 9.4
Impact: 9.2
Exploitability:10.0
Pristup
VektorSloženostAutentikacija
NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE NONE COMPLETE
CVSS vektor AV:N/AC:L/Au:N/C:C/I:N/A:C
Zadnje važnije ažuriranje 04-11-2017 - 01:29
Objavljeno 05-07-2017 - 01:29