CVE-2015-5166
Publication date 12 August 2015
Last updated 24 July 2024
Ubuntu priority
Description
Use-after-free vulnerability in QEMU in Xen 4.5.x and earlier does not completely unplug emulated block devices, which allows local HVM guest users to gain privileges by unplugging a block device twice.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| qemu | ||
| 14.04 LTS trusty |
Not affected
|
|
| qemu-kvm | ||
| 14.04 LTS trusty | Not in release | |
| xen | ||
| 14.04 LTS trusty | Not in release | |
Notes
Patch details
| Package | Patch details |
|---|---|
| qemu |
References
Related Ubuntu Security Notices (USN)
- USN-2724-1
- QEMU vulnerabilities
- 27 August 2015