Denial of service in Xen - CVE-2017-10923
Published: June 21, 2017 / Updated: July 28, 2020
Vulnerability identifier: #VU7150
CSH Severity: Low
CVSS v4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2017-10923
CWE-ID: CWE-284
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local attacker to cause DoS condition on the host system.
The weakness exists due to array access error. A local user on the guest system can send specially crafted software generated interrupts to vCPUS that use the MMIO register GICD_SGIR (GICv2) or System Register ICC_SGI1R (GICv3) and cause the hypervisor to crash.
Successful exploitation of the vulnerability results in denial of service.
The weakness exists due to array access error. A local user on the guest system can send specially crafted software generated interrupts to vCPUS that use the MMIO register GICD_SGIR (GICv2) or System Register ICC_SGI1R (GICv3) and cause the hypervisor to crash.
Successful exploitation of the vulnerability results in denial of service.
Affected software
Xen
Gentoo Linux
Fedora
xen (Alpine package)
xen
Gentoo Linux
Fedora
xen (Alpine package)
xen
How to mitigate CVE-2017-10923
Install update from vendor's website.
xen (Alpine package) - update to 4.8.2-r0
xen - addressed in versions 4.6.5-7.fc24, 4.7.2-7.fc25, 4.8.1-4.fc26
xen - addressed in versions 4.6.5-7.fc24, 4.7.2-7.fc25, 4.8.1-4.fc26