Lucene search

K
ubuntucveUbuntu.comUB:CVE-2014-3124
HistoryMay 07, 2014 - 12:00 a.m.

CVE-2014-3124

2014-05-0700:00:00
ubuntu.com
ubuntu.com
8

CVSS2

6.7

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

COMPLETE

AV:A/AC:L/Au:S/C:P/I:P/A:C

EPSS

0.001

Percentile

35.5%

The HVMOP_set_mem_type control in Xen 4.1 through 4.4.x allows local guest
HVM administrators to cause a denial of service (hypervisor crash) or
possibly execute arbitrary code by leveraging a separate qemu-dm
vulnerability to trigger invalid page table translations for unspecified
memory page types.

OSVersionArchitecturePackageVersionFilename
ubuntu12.04noarchxen< 4.1.6.1-0ubuntu0.12.04.2UNKNOWN
ubuntu13.10noarchxen< 4.3.0-1ubuntu1.4UNKNOWN
ubuntu14.04noarchxen< 4.4.0-0ubuntu5.1UNKNOWN

CVSS2

6.7

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

COMPLETE

AV:A/AC:L/Au:S/C:P/I:P/A:C

EPSS

0.001

Percentile

35.5%