CVE Database
/

CVE-2015-2756

Back to search

CVE-2015-2756

Published: Apr 1, 2015

Modified: Aug 6, 2024

PUBLISHED

Description

QEMU, as used in Xen 3.3.x through 4.5.x, does not properly restrict access to PCI command registers, which might allow local HVM guest users to cause a denial of service (non-maskable interrupt and host crash) by disabling the (1) memory or (2) I/O decoding for a PCI Express device and then accessing the device, which triggers an Unsupported Request (UR) response.

VendorProductVersions

n/a

n/a

affected
n/a

References

72577
vdb-entry
x_refsource_BID
GLSA-201504-04
vendor-advisory
x_refsource_GENTOO
DSA-3259
vendor-advisory
x_refsource_DEBIAN
FEDORA-2015-5295
vendor-advisory
x_refsource_FEDORA
FEDORA-2015-5208
vendor-advisory
x_refsource_FEDORA
openSUSE-SU-2015:0732
vendor-advisory
x_refsource_SUSE
USN-2608-1
vendor-advisory
x_refsource_UBUNTU
1031998
vdb-entry
x_refsource_SECTRACK
FEDORA-2015-5402
vendor-advisory
x_refsource_FEDORA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now