Candidate: CVE-2015-8340 PublicDate: 2015-12-17 19:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-8340 http://xenbits.xen.org/xsa/advisory-159.html Description: The memory_exchange function in common/memory.c in Xen 3.2.x through 4.6.x does not properly release locks, which might allow guest OS administrators to cause a denial of service (deadlock or host crash) via unspecified vectors, related to XENMEM_exchange error handling. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Julien Grall and Jan Beulich Assigned-to: CVSS: Patches_xen: upstream: http://xenbits.xen.org/xsa/xsa159.patch Tags_xen: universe-binary upstream_xen: needed precise_xen: released (4.1.6.1-0ubuntu0.12.04.8) trusty_xen: released (4.4.2-0ubuntu0.14.04.4) trusty/esm_xen: DNE (trusty was released [4.4.2-0ubuntu0.14.04.4]) vivid_xen: released (4.5.0-1ubuntu4.4) wily_xen: released (4.5.1-0ubuntu1.2) devel_xen: released (4.6.0-1ubuntu2)