Denial of service in Xen - CVE-2017-10923

 

Denial of service in Xen - CVE-2017-10923

Published: June 21, 2017 / Updated: July 28, 2020


Vulnerability identifier: #VU7150
CSH Severity: Low
CVSS v4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-10923
CWE-ID: CWE-284
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local attacker to cause DoS condition on the host system.

The weakness exists due to array access error. A local user on the guest system can send specially crafted software generated interrupts to vCPUS that use the MMIO register GICD_SGIR (GICv2) or System Register ICC_SGI1R (GICv3) and cause the hypervisor to crash.

Successful exploitation of the vulnerability results in denial of service.



Affected software

Xen
Gentoo Linux
Fedora
xen (Alpine package)
xen

How to mitigate CVE-2017-10923

Install update from vendor's website.

xen (Alpine package) - update to 4.8.2-r0
xen - addressed in versions 4.6.5-7.fc24, 4.7.2-7.fc25, 4.8.1-4.fc26

External References

Related Security Bulletins