Vulnerability Bulletins

Xen Security Advisory 337 (XSA-337) (CVE-2020-25595)


System information

   
Affected software AmazonWS

Description

Initial Publication Date: 2020/09/22 8:45AM PST CVE Identifier: CVE-2020-25595 AWS is aware of Xen Security Advisory 337 released by the Xen Security team on September 22nd 2020. Nitro based instances are not affected. The issue depends on PCI devices passed through to customer instances exposing behavior outside of the PCI device specification. EC2 is not using such devices, and no customer action is required.

More info:

https://aws.amazon.com/security/security-bulletins/AWS-2020-004/

Standar resources

Property Value
CVE CVE-2020-25595.

Version history

Version Comments Date
1.0 Advisory issued 2020-09-23
Ministerio de Defensa
CNI
CCN
CCN-CERT