Description
GNTTABOP_swap_grant_ref in Xen 4.2 through 4.5 does not check the grant table operation version, which allows local guest domains to cause a denial of service (NULL pointer dereference) via a hypercall without a GNTTABOP_setup_table or GNTTABOP_set_version.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-3286-1 | xen security update |
EUVD |
EUVD-2015-4187 | GNTTABOP_swap_grant_ref in Xen 4.2 through 4.5 does not check the grant table operation version, which allows local guest domains to cause a denial of service (NULL pointer dereference) via a hypercall without a GNTTABOP_setup_table or GNTTABOP_set_version. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T06:04:02.761Z
Reserved: 2015-06-02T00:00:00.000Z
Link: CVE-2015-4163
No data.
Status : Modified
Published: 2015-06-15T15:59:12.413
Modified: 2026-05-06T22:30:45.220
Link: CVE-2015-4163
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD