CVE Vulnerabilities

CVE-2014-1894

Published: Apr 01, 2014 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.2 MEDIUM
AV:A/AC:M/Au:S/C:N/I:N/A:C
RedHat/V2
4.3 MODERATE
AV:A/AC:H/Au:S/C:N/I:N/A:C
RedHat/V3
Ubuntu
MEDIUM

Multiple integer overflows in unspecified suboperations in the flask hypercall in Xen 3.2.x and earlier, when XSM is enabled, allow local users to cause a denial of service (processor fault) via unspecified vectors, a different vulnerability than CVE-2014-1891, CVE-2014-1892, and CVE-2014-1893.

Affected Software

Name Vendor Start Version End Version
Xen Xen * 3.2.3 (including)
Xen Xen 3.0.2 (including) 3.0.2 (including)
Xen Xen 3.0.3 (including) 3.0.3 (including)
Xen Xen 3.0.4 (including) 3.0.4 (including)
Xen Xen 3.1.3 (including) 3.1.3 (including)
Xen Xen 3.1.4 (including) 3.1.4 (including)
Xen Xen 3.2.0 (including) 3.2.0 (including)
Xen Xen 3.2.1 (including) 3.2.1 (including)
Xen Xen 3.2.2 (including) 3.2.2 (including)
Xen-3.3 Ubuntu upstream *

References