CVE-2015-4163
EPSS 0.12%Published: 6/15/2015Modified: 4/28/2026
Description
GNTTABOP_swap_grant_ref in Xen 4.2 through 4.5 does not check the grant table operation version, which allows local guest domains to cause a denial of service (NULL pointer dereference) via a hypercall without a GNTTABOP_setup_table or GNTTABOP_set_version.
Affected packages (1)
- Debian/xenfrom 0, < 4.6.0-1