CVE-2014-8867

Publication date 1 December 2014

Last updated 24 July 2024


Ubuntu priority

The acceleration support for the “REP MOVS” instruction in Xen 4.4.x, 3.2.x, and earlier lacks properly bounds checking for memory mapped I/O (MMIO) emulated in the hypervisor, which allows local HVM guests to cause a denial of service (host crash) via unspecified vectors.

Status

Package Ubuntu Release Status
xen 15.04 vivid
Fixed 4.4.1-3ubuntu2
14.10 utopic
Fixed 4.4.1-0ubuntu0.14.10.2
14.04 LTS trusty
Fixed 4.4.1-0ubuntu0.14.04.2
12.04 LTS precise
Fixed 4.1.6.1-0ubuntu0.12.04.4
10.04 LTS lucid Not in release
xen-3.3 15.04 vivid Not in release
14.10 utopic Not in release
14.04 LTS trusty Not in release
12.04 LTS precise Not in release
10.04 LTS lucid Ignored end of life

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
xen