cbcvebase.
CVE-2015-8104
published 2015-11-16

CVE-2015-8104: The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic or hang) by…

critical10CVSS 3.1
AVNACLPRNUINSCCHIHAH
The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic or hang) by triggering many #DB (aka Debug) exceptions, related to svm.c.

Affected

57 ranges· showing 25
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debiandebian_linux
debianlinux< linux 4.2.6-2 (bookworm)linux 4.2.6-2 (bookworm)
debianvirtualbox< linux 4.2.6-2 (bookworm)linux 4.2.6-2 (bookworm)
debianxen< linux 4.2.6-2 (bookworm)linux 4.2.6-2 (bookworm)
debianxen< xen 4.17.2+76-ge1f9cb16e2-1~deb12u1 (bookworm)xen 4.17.2+76-ge1f9cb16e2-1~deb12u1 (bookworm)
linuxlinux_kernel<= 4.2.3
linuxlinux_kernel>= 0 < 4.2.6-24.2.6-2
linuxlinux_kernel>= 0 < 4.2.6-24.2.6-2
linuxlinux_kernel>= 0 < 4.2.6-24.2.6-2
linuxlinux_kernel>= 0 < 4.2.6-24.2.6-2
linuxlinux_kernel>= 0 < 3.13.0-73.1163.13.0-73.116
oraclesolaris
oraclevm_virtualbox4.0.0 – 4.0.34
oraclevm_virtualbox4.1.0 – 4.1.42
oraclevm_virtualbox4.2.0 – 4.2.34
oraclevm_virtualbox4.3.0 – 4.3.35
oraclevm_virtualbox5.0.0 – 5.0.13
xenxen
xenxen
xenxen

CVSS provenance

nvdv3.110.0CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
osv10.0CRITICAL