CVE-2014-3714
Publication date 19 May 2014
Last updated 24 July 2024
Ubuntu priority
The ARM image loading functionality in Xen 4.4.x does not properly validate kernel length, which allows local users to read system memory or cause a denial of service (crash) via a crafted 32-bit ARM guest kernel in an image, which triggers a buffer overflow.
Status
Package | Ubuntu Release | Status |
---|---|---|
xen | 14.04 LTS trusty |
Fixed 4.4.0-0ubuntu5.1
|
xen-3.3 | 14.04 LTS trusty | Not in release |