CVE Database
/

CVE-2014-5148

Back to search

CVE-2014-5148

Published: Oct 26, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

Xen 4.4.x, when running on an ARM system and "handling an unknown system register access from 64-bit userspace," returns to an instruction of the trap handler for kernel space faults instead of an instruction that is associated with faults in 64-bit userspace, which allows local guest users to cause a denial of service (crash) and possibly gain privileges via a crafted process.

VendorProductVersions

n/a

n/a

affected
n/a

References

59934
third-party-advisory
x_refsource_SECUNIA
xen-cve20145148-dos(95233)
vdb-entry
x_refsource_XF
1030725
vdb-entry
x_refsource_SECTRACK
69189
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now