Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-5148

Опубликовано: 26 окт. 2014
Источник: nvd
CVSS2: 4.6
EPSS Низкий

Описание

Xen 4.4.x, when running on an ARM system and "handling an unknown system register access from 64-bit userspace," returns to an instruction of the trap handler for kernel space faults instead of an instruction that is associated with faults in 64-bit userspace, which allows local guest users to cause a denial of service (crash) and possibly gain privileges via a crafted process.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:xen:xen:4.4.1:*:*:*:*:*:x64:*
cpe:2.3:o:xen:xen:4.4.0:-:*:*:*:*:x64:*

EPSS

Процентиль: 37%
0.00156
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 11 лет назад

Xen 4.4.x, when running on an ARM system and "handling an unknown system register access from 64-bit userspace," returns to an instruction of the trap handler for kernel space faults instead of an instruction that is associated with faults in 64-bit userspace, which allows local guest users to cause a denial of service (crash) and possibly gain privileges via a crafted process.

debian
больше 11 лет назад

Xen 4.4.x, when running on an ARM system and "handling an unknown syst ...

github
больше 3 лет назад

Xen 4.4.x, when running on an ARM system and "handling an unknown system register access from 64-bit userspace," returns to an instruction of the trap handler for kernel space faults instead of an instruction that is associated with faults in 64-bit userspace, which allows local guest users to cause a denial of service (crash) and possibly gain privileges via a crafted process.

EPSS

Процентиль: 37%
0.00156
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-119