Description
The mod_l2_entry function in arch/x86/mm.c in Xen 3.4 through 4.6.x does not properly validate level 2 page table entries, which allows local PV guest administrators to gain privileges via a crafted superpage mapping.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-3390-1 | xen security update |
EUVD |
EUVD-2015-7733 | The mod_l2_entry function in arch/x86/mm.c in Xen 3.4 through 4.6.x does not properly validate level 2 page table entries, which allows local PV guest administrators to gain privileges via a crafted superpage mapping. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T07:58:59.983Z
Reserved: 2015-10-14T00:00:00.000Z
Link: CVE-2015-7835
No data.
Status : Modified
Published: 2015-10-30T15:59:04.747
Modified: 2026-05-06T22:30:45.220
Link: CVE-2015-7835
OpenCVE Enrichment
No data.
Debian DSA
EUVD