Xen 4.7 allows local guest OS users to obtain sensitive host information by loading a 32-bit ELF symbol table.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://xenbits.xen.org/xsa/advisory-194.html | patch vendor advisory |
https://security.gentoo.org/glsa/201612-56 | vendor advisory |
http://www.securityfocus.com/bid/94468 | vdb entry third party advisory |
http://www.securitytracker.com/id/1037343 | vdb entry |
http://xenbits.xen.org/xsa/xsa194.patch | patch vendor advisory |