CVE-2015-4164 PUBLISHED

The compat_iret function in Xen 3.1 through 4.5 iterates the wrong way through a loop, which allows local 32-bit PV guest administrators to cause a denial of service (large loop and system hang) via a hypercall_iret call with EFLAGS.VM set.

EPSS 0.07% · 22.1th percentile

Risk Scores

EPSS Score
0.07%
22.1th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSxen0, 4.3.0-1ubuntu1, 4.3.0-1ubuntu2

Timeline

References

Open in Interactive Console →