Show filters
555 Total Results
Displaying 411-420 of 555
Sort by:
Attacker Value
Unknown

CVE-2014-4021

Disclosure Date: June 18, 2014 (last updated October 05, 2023)
Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from guests, which allows local guest OS users to obtain sensitive information via unspecified vectors.
0
Attacker Value
Unknown

CVE-2014-3968

Disclosure Date: June 05, 2014 (last updated October 05, 2023)
The HVMOP_inject_msi function in Xen 4.2.x, 4.3.x, and 4.4.x allows local guest HVM administrators to cause a denial of service (host crash) via a large number of crafted requests, which trigger an error messages to be logged.
0
Attacker Value
Unknown

CVE-2014-3967

Disclosure Date: June 05, 2014 (last updated October 05, 2023)
The HVMOP_inject_msi function in Xen 4.2.x, 4.3.x, and 4.4.x does not properly check the return value from the IRQ setup check, which allows local HVM guest administrators to cause a denial of service (NULL pointer dereference and crash) via unspecified vectors.
0
Attacker Value
Unknown

CVE-2014-3969

Disclosure Date: June 05, 2014 (last updated October 05, 2023)
Xen 4.4.x, when running on an ARM system, does not properly check write permissions on virtual addresses, which allows local guest administrators to gain privileges via unspecified vectors.
0
Attacker Value
Unknown

CVE-2014-3716

Disclosure Date: May 19, 2014 (last updated October 05, 2023)
Xen 4.4.x does not properly check alignment, which allows local users to cause a denial of service (crash) via an unspecified field in a DTB header in a 32-bit guest kernel.
0
Attacker Value
Unknown

CVE-2014-3715

Disclosure Date: May 19, 2014 (last updated October 05, 2023)
Buffer overflow in Xen 4.4.x allows local users to read system memory or cause a denial of service (crash) via a crafted 32-bit guest kernel, related to searching for an appended DTB.
0
Attacker Value
Unknown

CVE-2014-3714

Disclosure Date: May 19, 2014 (last updated October 05, 2023)
The ARM image loading functionality in Xen 4.4.x does not properly validate kernel length, which allows local users to read system memory or cause a denial of service (crash) via a crafted 32-bit ARM guest kernel in an image, which triggers a buffer overflow.
0
Attacker Value
Unknown

CVE-2014-3717

Disclosure Date: May 19, 2014 (last updated October 05, 2023)
Xen 4.4.x does not properly validate the load address for 64-bit ARM guest kernels, which allows local users to read system memory or cause a denial of service (crash) via a crafted kernel, which triggers a buffer overflow.
0
Attacker Value
Unknown

CVE-2014-3124

Disclosure Date: May 07, 2014 (last updated October 05, 2023)
The HVMOP_set_mem_type control in Xen 4.1 through 4.4.x allows local guest HVM administrators to cause a denial of service (hypervisor crash) or possibly execute arbitrary code by leveraging a separate qemu-dm vulnerability to trigger invalid page table translations for unspecified memory page types.
0
Attacker Value
Unknown

CVE-2014-3125

Disclosure Date: May 02, 2014 (last updated October 05, 2023)
Xen 4.4.x, when running on an ARM system, does not properly context switch the CNTKCTL_EL1 register, which allows local guest users to modify the hardware timers and cause a denial of service (crash) via unspecified vectors.
0