Xen 4.4.x, when running on an ARM system and "handling an unknown system register access from 64-bit userspace," returns to an instruction of the trap handler for kernel space faults instead of an instruction that is associated with faults in 64-bit userspace, which allows local guest users to cause a denial of service (crash) and possibly gain privileges via a crafted process.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2014-10-26T20:00:00
Updated: 2024-08-06T11:34:37.474Z
Reserved: 2014-07-30T00:00:00
Link: CVE-2014-5148
Vulnrichment
No data.
NVD
Status : Modified
Published: 2014-10-26T20:55:03.180
Modified: 2024-11-21T02:11:30.450
Link: CVE-2014-5148
Redhat
No data.