CVE-2014-3714 Information
Feb 14, 2021
cve
Description
The ARM image loading functionality in Xen 4.4.x does not properly validate kernel length which allows local users to read system memory or cause a denial of service (crash) via a crafted 32-bit ARM guest kernel in an image which triggers a buffer overflow.
Reference
http://www.openwall.com/lists/oss-security/2014/05/14/4 http://www.openwall.com/lists/oss-security/2014/05/15/6 http://www.openwall.com/lists/oss-security/2014/05/16/1 http://www.securitytracker.com/id/1030252 http://xenbits.xen.org/xsa/advisory-95.html
Share on: