#VU29599 Resource management error in Xen - CVE-2020-15564
Published: July 9, 2020 / Updated: July 15, 2020
Xen
Xen Project
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to missing alignment check in VCPUOP_register_vcpu_info hypercall in Xen. A attacker with privileged access to guest operating system can crash the hypervisor.
Note: the vulnerability affects Arm systems only.