Get a Pentest and security assessment of your IT network.

2021-current

CVE-2015-2150 – Xen 3.3.x through 4.5.x and the Linux kernel through 3.19.1 do not proper

Xen 3.3.x through 4.5.x and the Linux kernel through 3.19.1 do not properly restrict access to PCI command registers, which might allow local guest OS users to cause a denial of service (non-maskable interrupt and host crash) by disabling the (1) memory or (2) I/O decoding for a PCI Express device and then accessing the device, which triggers an Unsupported Request (UR) response.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2150

Reference (s):

  • BID:73014
  • URL: http://www.securityfocus.com/bid/73014
  • BUGTRAQ:20190813 [SECURITY] [DSA 4497-1] linux security update
  • URL: https://seclists.org/bugtraq/2019/Aug/18
  • http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=af6fc858a35b90e89ea7a7ee58e66628c55c776b
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-5419 - GE Multilink ML800, ML1200, ML1600, and ML2400 switches with firmware 4.2

2021-current

CVE-2019-7128 - Adobe Acrobat and Reader versions 2019.010.20098 and earlier, 2019.010.20

2021-current

CVE-2020-10979 - GitLab EE/CE 11.10 to 12.9 is leaking information on restricted CI pipeli