CVE-2015-3259 — Improper Input Validation in XEN
Severity
6.8MEDIUMNVD
EPSS
0.1%
top 82.52%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 16
Latest updateMay 14
Description
Stack-based buffer overflow in the xl command line utility in Xen 4.1.x through 4.5.x allows local guest administrators to gain privileges via a long configuration argument.
CVSS vector
AV:L/AC:L/C:C/I:C/A:CExploitability: 3.1 | Impact: 10.0