CVE-2014-2915: Medium severity XEN Xen vulnerability
Xen 4.4.x, when running on ARM systems, does not properly restrict access to hardware features, which allows local guest users to cause a denial of service (host or guest crash) via unspecified vectors, related to (1) cache control, (2) coprocessors, (3) debug registers, and (4) other unspecified registers.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2915?
CVE-2014-2915 is classified as a medium severity vulnerability that can lead to denial of service attacks.
How do I fix CVE-2014-2915?
To mitigate CVE-2014-2915, update to a newer version of Xen that addresses this vulnerability.
Who is impacted by CVE-2014-2915?
CVE-2014-2915 affects Xen versions 4.4.0 and 4.4.0-rc1 running on ARM systems.
What types of denial of service are associated with CVE-2014-2915?
CVE-2014-2915 may allow local guest users to crash either the host or guest systems through improper access to hardware features.
Are there any specific vectors mentioned for CVE-2014-2915?
CVE-2014-2915 references unspecified vectors related to cache control, coprocessors, debug registers, and other hardware access.