Xen 4.4.x, when running on an ARM system and "handling an unknown system register access from 64-bit userspace," returns to an instruction of the trap handler for kernel space faults instead of an instruction that is associated with faults in 64-bit userspace, which allows local guest users to cause a denial of service (crash) and possibly gain privileges via a crafted process.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2014-10-26T20:00:00

Updated: 2024-08-06T11:34:37.474Z

Reserved: 2014-07-30T00:00:00

Link: CVE-2014-5148

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2014-10-26T20:55:03.180

Modified: 2017-08-29T01:35:11.907

Link: CVE-2014-5148

cve-icon Redhat

No data.