← Back

CVE-2014-1894

nvd nist
Published: Apr 1, 2014Modified: May 6, 2026

JSON object

Loading...
5.2
Vector
AV:A/AC:M/Au:S/C:N/I:N/A:C
Exploitability: 4.4 / Impact: 6.9
Source: NVD

Description

Multiple integer overflows in unspecified suboperations in the flask hypercall in Xen 3.2.x and earlier, when XSM is enabled, allow local users to cause a denial of service (processor fault) via unspecified vectors, a different vulnerability than CVE-2014-1891, CVE-2014-1892, and CVE-2014-1893.

Affected (9)

Products: Xen: Xen
1 product
Xen
Configuration A
9 vulnerable
Vulnerable SoftwareAffected Versions
Xen
Up to 3.2.3
Version 3.0.2
Version 3.0.3
Version 3.0.4
Version 3.1.3
Version 3.1.4
Version 3.2.0
Version 3.2.1
Version 3.2.2

Related CWEs

References (16)

Source: cve@mitre.org
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.