CVE-2014-3967
EPSS 0.26%Published: 6/5/2014Modified: 4/28/2026
Also known as:DEBIAN-CVE-2014-3967
Description
The HVMOP_inject_msi function in Xen 4.2.x, 4.3.x, and 4.4.x does not properly check the return value from the IRQ setup check, which allows local HVM guest administrators to cause a denial of service (NULL pointer dereference and crash) via unspecified vectors.
Affected packages (1)
- Debian/xenfrom 0, < 4.4.1-1