CVE-2015-3340

Source
https://cve.org/CVERecord?id=CVE-2015-3340
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2015-3340.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2015-3340
Downstream
DEBIAN (1)
MGASA (1)
openSUSE (1)
SUSE (3)
UBUNTU (1)
Related
Withdrawn
2026-01-27T04:14:59Z
Published
2015-04-28T14:59:02Z
Modified
2026-04-16T01:40:11Z
Summary
[none]
Details

Xen 4.2.x through 4.5.x does not initialize certain fields, which allows certain remote service domains to obtain sensitive information from memory via a (1) XEN_DOMCTL_gettscinfo or (2) XEN_SYSCTL_getdomaininfolist request.

References

Affected packages