cbcvebase.
CVE-2015-2151
published 2015-03-12

CVE-2015-2151: The x86 emulator in Xen 3.2.x through 4.5.x does not properly ignore segment overrides for instructions with register operands, which allows local guest users…

PriorityP429high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.57%
43.4th percentile
The x86 emulator in Xen 3.2.x through 4.5.x does not properly ignore segment overrides for instructions with register operands, which allows local guest users to obtain sensitive information, cause a denial of service (memory corruption), or possibly execute arbitrary code via unspecified vectors.

Affected

42 ranges· showing 25
VendorProductVersion rangeFixed in
debiandebian_linux
debianxen< xen 4.4.1-8 (bookworm)xen 4.4.1-8 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
fedoraprojectfedora
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen
xenxen

CVSS provenance

nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.2HIGH
vendor_debian7.2HIGH
vendor_redhat7.2HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.