CVE-2014-5148
Publication date 26 October 2014
Last updated 24 July 2024
Ubuntu priority
Description
Xen 4.4.x, when running on an ARM system and “handling an unknown system register access from 64-bit userspace,” returns to an instruction of the trap handler for kernel space faults instead of an instruction that is associated with faults in 64-bit userspace, which allows local guest users to cause a denial of service (crash) and possibly gain privileges via a crafted process.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| xen | ||
| 14.04 LTS trusty |
Fixed 4.4.1-0ubuntu0.14.04.3
|
|
| xen-3.3 | ||
| 14.04 LTS trusty | Not in release | |
Notes
Patch details
| Package | Patch details |
|---|---|
| xen |