Skip to content

CVE-2014-4022

The alloc_domain_struct function in arch/arm/domain.c in Xen 4.4.x, when running on an ARM platform, does not properly initialize the structure containing the grant table pages for a domain, which allows local guest administrators to obtain sensitive information via the GNTTABOP_setup_table subhypercall.

Ver en NVD

Severidad

N/A

EPSS

Probabilidad de explotación (próx. 30 días): 0.0017 (0.2%)
Percentil: 37.4%
EPSS: 2026-05-06

Afecta

xen:xen

Descripción técnica

The alloc_domain_struct function in arch/arm/domain.c in Xen 4.4.x, when running on an ARM platform, does not properly initialize the structure containing the grant table pages for a domain, which allows local guest administrators to obtain sensitive information via the GNTTABOP_setup_table subhypercall.

Publicada: 9/7/2014, 14:55:03
Última modificación: 6/5/2026, 22:30:45

Referencias

InicioEventosBlogRecursosEquipo