Candidate: CVE-2014-7155 PublicDate: 2014-10-02 14:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7155 http://xenbits.xen.org/xsa/advisory-105.html Description: The x86_emulate function in arch/x86/x86_emulate/x86_emulate.c in Xen 4.4.x and earlier does not properly check supervisor mode permissions, which allows local HVM users to cause a denial of service (guest crash) or gain guest kernel mode privileges via vectors involving an (1) HLT, (2) LGDT, (3) LIDT, or (4) LMSW instruction. Ubuntu-Description: Notes: mdeslaur> 3.2.x+ Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_xen-3.3: Tags_xen-3.3: universe-binary upstream_xen-3.3: ignored (reached end-of-life) lucid_xen-3.3: ignored (reached end-of-life) precise_xen-3.3: DNE trusty_xen-3.3: DNE trusty/esm_xen-3.3: DNE utopic_xen-3.3: DNE vivid_xen-3.3: DNE devel_xen-3.3: DNE Patches_xen: Tags_xen: universe-binary upstream_xen: needs-triage lucid_xen: DNE precise_xen: released (4.1.6.1-0ubuntu0.12.04.3) trusty_xen: released (4.4.0-0ubuntu5.2) trusty/esm_xen: DNE (trusty was released [4.4.0-0ubuntu5.2]) utopic_xen: released (4.4.0-0ubuntu8) vivid_xen: released (4.4.1-3ubuntu1) devel_xen: released (4.4.1-3ubuntu1)