CVE-2014-2599

The HVMOP_set_mem_access HVM control operations in Xen 4.1.x for 32-bit and 4.1.x through 4.4.x for 64-bit allow local guest administrators to cause a denial of service (CPU consumption) by leveraging access to certain service domains for HVM guests and a large input.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.9 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:N/I:N/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 23%
VendorProductVersion
xenxen
4.1.0
xenxen
4.1.0
xenxen
4.1.1
xenxen
4.1.1
xenxen
4.1.2
xenxen
4.1.2
xenxen
4.1.3
xenxen
4.1.3
xenxen
4.1.4
xenxen
4.1.4
xenxen
4.1.5
xenxen
4.1.5
xenxen
4.1.6.1
xenxen
4.1.6.1
xenxen
4.2.0
xenxen
4.2.1
xenxen
4.2.2
xenxen
4.2.3
xenxen
4.3.0
xenxen
4.3.1
xenxen
4.3.2
xenxen
4.4.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
xen
bullseye
4.14.6-1
fixed
squeeze
not-affected
bullseye (security)
4.14.5+94-ge49571868d-1
fixed
bookworm
4.17.3+10-g091466ba55-1~deb12u1
fixed
sid
4.17.3+36-g54dacb5c02-1
fixed
trixie
4.17.3+36-g54dacb5c02-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
xen
trusty
Fixed 4.4.0-0ubuntu5.1
released
saucy
Fixed 4.3.0-1ubuntu1.4
released
quantal
ignored
precise
Fixed 4.1.6.1-0ubuntu0.12.04.2
released
lucid
dne
xen-3.3
trusty
dne
saucy
dne
quantal
dne
precise
dne
lucid
not-affected