Logo
vulnerabilityCVE-2017-12134
Name
CVE-2017-12134
Source
NVD ( link)Debian ( link)
Description
The xen_biovec_phys_mergeable function in drivers/xen/biomerge.c in Xen might allow local OS guest users to corrupt block device data streams and consequently obtain sensitive memory information, cause a denial of service, or gain host OS privileges by leveraging incorrect block IO merge-ability calculation.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
xen
Exploitable

Vulnerability Ratings#


8.8
other
7.2
CVSSv2

Others affected component#


Name
Project
Project Version
Version
Status
buildroot
master
4.19.5
Exploitable