Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2015-3340

Xen 4.2.x through 4.5.x does not initialize certain fields, which allows certain remote service domains to obtain sensitive information from memory via a (1) XEN_DOMCTL_gettscinfo or (2) XEN_SYSCTL_getdomaininfolist request.

  • Published: Apr 28, 2015
  • Updated: Apr 13, 2023
  • CVE: CVE-2015-3340
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 2.9
  • AV:A/AC:M/Au:N/C:P/I:N/A:N

CWEs: