Skip to main content

CVE-2015-4163

Severity Medium
Score 4.9/10

Summary

GNTTABOP_swap_grant_ref in Xen 4.2 through 4.5 does not check the grant table operation version, which allows local guest domains to cause a denial of service (NULL pointer dereference) via a hypercall without a GNTTABOP_setup_table or GNTTABOP_set_version.

  • LOW
  • LOCAL
  • NONE
  • NONE
  • NONE
  • COMPLETE

References

Advisory Timeline

  • Published