CVE-2014-4022
Publication date 9 July 2014
Last updated 24 July 2024
Ubuntu priority
The alloc_domain_struct function in arch/arm/domain.c in Xen 4.4.x, when running on an ARM platform, does not properly initialize the structure containing the grant table pages for a domain, which allows local guest administrators to obtain sensitive information via the GNTTABOP_setup_table subhypercall.
Status
Package | Ubuntu Release | Status |
---|---|---|
xen | 14.04 LTS trusty |
Fixed 4.4.0-0ubuntu5.1
|
xen-3.3 | 14.04 LTS trusty | Not in release |
Notes
mdeslaur
hypervisor packages are in universe. For issues in the hypervisor, add appropriate tags to each section, ex: Tags_xen: universe-binary
Patch details
Package | Patch details |
---|---|
xen |