CVE-2014-9065: Medium severity xen xapi vulnerability
common/spinlock.c in Xen 4.4.x and earlier does not properly handle read and write locks, which allows local x86 guest users to cause a denial of service (write denial or NMI watchdog timeout and host crash) via a large number of read requests, a different vulnerability to CVE-2014-9066.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9065?
CVE-2014-9065 has a severity rating that indicates it can lead to denial of service through host crash.
How do I fix CVE-2014-9065?
To fix CVE-2014-9065, upgrade to a version of Xen that is later than 4.4.1.
What systems are affected by CVE-2014-9065?
CVE-2014-9065 affects Xen versions 4.4.x and earlier, as well as openSUSE versions 13.1 and 13.2.
What is the impact of exploiting CVE-2014-9065?
Exploiting CVE-2014-9065 can result in denial of service, causing host crashes or write denials.
Who can exploit CVE-2014-9065?
Local x86 guest users can exploit CVE-2014-9065 by sending a large number of read requests.