CVE Vulnerabilities

CVE-2014-5149

Published: Aug 22, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.7 MEDIUM
AV:L/AC:M/Au:N/C:N/I:N/A:C
RedHat/V2
4.3 MODERATE
AV:A/AC:H/Au:S/C:N/I:N/A:C
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Certain MMU virtualization operations in Xen 4.2.x through 4.4.x, when using shadow pagetables, are not preemptible, which allows local HVM guest to cause a denial of service (vcpu consumption) by invoking these operations, which process every page assigned to a guest, a different vulnerability than CVE-2014-5146.

Affected Software

NameVendorStart VersionEnd Version
OpensuseOpensuse13.1 (including)13.1 (including)
OpensuseOpensuse13.2 (including)13.2 (including)
XenUbuntuprecise*
XenUbuntuupstream*
XenUbuntuutopic*
Xen-3.3Ubuntulucid*
Xen-3.3Ubuntuupstream*

References