An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS users to obtain sensitive information from the host OS (or an arbitrary guest OS) because intercepted I/O operations can cause a write of data from uninitialized hypervisor stack memory.
References
Configurations
History
No history.
Information
Published : 2017-10-18 08:29
Updated : 2025-04-20 01:37
NVD link : CVE-2017-15589
Mitre link : CVE-2017-15589
CVE.ORG link : CVE-2017-15589
JSON object : View
Products Affected
xen
- xen
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor