CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
71317 | CVE-2014-4021 | Candidate | Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from guests, which allows local guest OS users to obtain sensitive information via unspecified vectors. | Assigned (20140611) | None (candidate not yet proposed) | View | |
29264 | CVE-2007-5907 | Candidate | Xen 3.1.1 does not prevent modification of the CR4 TSC from applications, which allows pv guests to cause a denial of service (crash). | Assigned (20071109) | None (candidate not yet proposed) | View | |
29263 | CVE-2007-5906 | Candidate | Xen 3.1.1 allows virtual guest system users to cause a denial of service (hypervisor crash) by using a debug register (DR7) to set certain breakpoints. | Assigned (20071109) | None (candidate not yet proposed) | View | |
61864 | CVE-2013-1917 | Candidate | Xen 3.1 through 4.x, when running 64-bit hosts on Intel CPUs, does not clear the NT flag when using an IRET after a SYSENTER instruction, which allows PV guest users to cause a denial of service (hypervisor crash) by triggering a #GP fault, which is not properly handled by another IRET instruction. | Assigned (20130219) | None (candidate not yet proposed) | View | |
64501 | CVE-2013-4554 | Candidate | Xen 3.0.3 through 4.1.x (possibly 4.1.6.1), 4.2.x (possibly 4.2.3), and 4.3.x (possibly 4.3.1) does not properly prevent access to hypercalls, which allows local guest users to gain privileges via a crafted application running in ring 1 or 2. | Assigned (20130612) | None (candidate not yet proposed) | View |
Page 109 of 20943, showing 5 records out of 104715 total, starting on record 541, ending on 545