Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-8595

Опубликовано: 19 нояб. 2014
Источник: ubuntu
Приоритет: medium
CVSS2: 1.9

Описание

arch/x86/x86_emulate/x86_emulate.c in Xen 3.2.1 through 4.4.x does not properly check privileges, which allows local HVM guest users to gain privileges or cause a denial of service (crash) via a crafted (1) CALL, (2) JMP, (3) RETF, (4) LCALL, (5) LJMP, or (6) LRET far branch instruction.

РелизСтатусПримечание
devel

released

4.4.1-3ubuntu2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [4.4.1-0ubuntu0.14.04.2]]
lucid

DNE

precise

released

4.1.6.1-0ubuntu0.12.04.4
trusty

released

4.4.1-0ubuntu0.14.04.2
trusty/esm

DNE

trusty was released [4.4.1-0ubuntu0.14.04.2]
upstream

needed

utopic

released

4.4.1-0ubuntu0.14.10.2
vivid

released

4.4.1-3ubuntu2

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

ignored

end of life
precise

DNE

trusty

DNE

trusty/esm

DNE

upstream

ignored

end of life
utopic

DNE

vivid

DNE

Показывать по

1.9 Low

CVSS2

Связанные уязвимости

redhat
около 11 лет назад

arch/x86/x86_emulate/x86_emulate.c in Xen 3.2.1 through 4.4.x does not properly check privileges, which allows local HVM guest users to gain privileges or cause a denial of service (crash) via a crafted (1) CALL, (2) JMP, (3) RETF, (4) LCALL, (5) LJMP, or (6) LRET far branch instruction.

nvd
около 11 лет назад

arch/x86/x86_emulate/x86_emulate.c in Xen 3.2.1 through 4.4.x does not properly check privileges, which allows local HVM guest users to gain privileges or cause a denial of service (crash) via a crafted (1) CALL, (2) JMP, (3) RETF, (4) LCALL, (5) LJMP, or (6) LRET far branch instruction.

debian
около 11 лет назад

arch/x86/x86_emulate/x86_emulate.c in Xen 3.2.1 through 4.4.x does not ...

github
больше 3 лет назад

arch/x86/x86_emulate/x86_emulate.c in Xen 3.2.1 through 4.4.x does not properly check privileges, which allows local HVM guest users to gain privileges or cause a denial of service (crash) via a crafted (1) CALL, (2) JMP, (3) RETF, (4) LCALL, (5) LJMP, or (6) LRET far branch instruction.

suse-cvrf
около 13 лет назад

Security update for Xen

1.9 Low

CVSS2