4.9
CVSSv2

CVE-2014-1896

Published: 01/04/2014 Updated: 07/01/2017
CVSS v2 Base Score: 4.9 | Impact Score: 6.4 | Exploitability Score: 4.4
VMScore: 436
Vector: AV:A/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

The (1) do_send and (2) do_recv functions in io.c in libvchan in Xen 4.2.x, 4.3.x, and 4.4-RC series allows local guests to cause a denial of service or possibly gain privileges via crafted xenstore ring indexes, which triggers a "read or write past the end of the ring."

Vulnerable Product Search on Vulmon Subscribe to Product

xen xen 4.2.0

xen xen 4.2.1

xen xen 4.2.2

xen xen 4.4.0

xen xen 4.3.0

xen xen 4.2.3

xen xen 4.3.1

Vendor Advisories

The (1) do_send and (2) do_recv functions in ioc in libvchan in Xen 42x, 43x, and 44-RC series allows local guests to cause a denial of service or possibly gain privileges via crafted xenstore ring indexes, which triggers a "read or write past the end of the ring" ...