6.1
CVSSv2

CVE-2014-7154

Published: 02/10/2014 Updated: 30/10/2018
CVSS v2 Base Score: 6.1 | Impact Score: 6.9 | Exploitability Score: 6.5
VMScore: 543
Vector: AV:A/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Race condition in HVMOP_track_dirty_vram in Xen 4.0.0 up to and including 4.4.x does not ensure possession of the guarding lock for dirty video RAM tracking, which allows certain local guest domains to cause a denial of service via unspecified vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fedoraproject fedora 20

fedoraproject fedora 19

debian debian linux 7.0

xen xen 4.1.6.1

xen xen 4.2.0

xen xen 4.1.0

xen xen 4.1.1

xen xen 4.2.1

xen xen 4.2.2

xen xen 4.4.0

xen xen 4.4.1

xen xen 4.1.2

xen xen 4.1.3

xen xen 4.2.3

xen xen 4.3.0

xen xen 4.1.4

xen xen 4.1.5

xen xen 4.3.1

opensuse opensuse 13.1

opensuse opensuse 12.3

Vendor Advisories

Multiple security issues have been discovered in the Xen virtualisation solution which may result in denial of service, information disclosure or privilege escalation For the stable distribution (wheezy), these problems have been fixed in version 414-3+deb7u3 For the unstable distribution (sid), these problems will be fixed soon We recommend t ...
Race condition in HVMOP_track_dirty_vram in Xen 400 through 44x does not ensure possession of the guarding lock for dirty video RAM tracking, which allows certain local guest domains to cause a denial of service via unspecified vectors ...