Xen MMU CVE-2014-8594 Local Security Bypass Vulnerability
BID:71149
Info
Xen MMU CVE-2014-8594 Local Security Bypass Vulnerability
| Bugtraq ID: | 71149 |
| Class: | Design Error |
| CVE: |
CVE-2014-8594 |
| Remote: | No |
| Local: | Yes |
| Published: | Nov 18 2014 12:00AM |
| Updated: | Apr 13 2015 10:06PM |
| Credit: | Roger Pau Monné of Citrix, and Jan Beulich of SUSE. |
| Vulnerable: |
Xen Xen 4.0.4 Xen Xen 4.0.1 Xen Xen 4.4.0 Rc1 Xen Xen 4.4 Xen Xen 4.3.1 Xen Xen 4.3.0 Xen Xen 4.3 Xen Xen 4.2.3 Xen Xen 4.2.2 Xen Xen 4.2.1 Xen Xen 4.2.0 Xen Xen 4.2 Xen Xen 4.1.6.1 Xen Xen 4.1.5 Xen Xen 4.1.3 Xen Xen 4.1.2 Xen Xen 4.1.0 Xen Xen 4.1 Xen Xen 4.0 S.u.S.E. openSUSE 13.2 S.u.S.E. openSUSE 13.1 Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 |
| Not Vulnerable: | |
Discussion
Xen MMU CVE-2014-8594 Local Security Bypass Vulnerability
Xen is prone to a local security-bypass vulnerability.
Attackers with access to a guest operating system can exploit this issue to bypass certain security restrictions and perform unauthorized actions.
Xen is prone to a local security-bypass vulnerability.
Attackers with access to a guest operating system can exploit this issue to bypass certain security restrictions and perform unauthorized actions.
Solution / Fix
Xen MMU CVE-2014-8594 Local Security Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.