Vulnerability Bulletins

DSA-3390 xen - security update

   
Affected software Debian
 
It was discovered that the code to validate level 2 page table entriesis bypassed when certain conditions are satisfied. A malicious PV guestadministrator can take advantage of this flaw to gain privileges via acrafted superpage mapping.

More info:

https://www.debian.org/security/2015/dsa-3390