CVE-2014-9030

Publication date 24 November 2014

Last updated 24 July 2024


Ubuntu priority

The do_mmu_update function in arch/x86/mm.c in Xen 3.2.x through 4.4.x does not properly manage page references, which allows remote domains to cause a denial of service by leveraging control over an HVM guest and a crafted MMU_MACHPHYS_UPDATE.

Status

Package Ubuntu Release Status
xen 15.04 vivid
Fixed 4.5.0-1ubuntu1
14.10 utopic
Fixed 4.4.1-0ubuntu0.14.10.2
14.04 LTS trusty
Fixed 4.4.1-0ubuntu0.14.04.2
12.04 LTS precise
Fixed 4.1.6.1-0ubuntu0.12.04.4
10.04 LTS lucid Not in release
xen-3.3 15.04 vivid Not in release
14.10 utopic Not in release
14.04 LTS trusty Not in release
12.04 LTS precise Not in release
10.04 LTS lucid Ignored end of life