Security Advisory

CVE-2014-3714

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2014-05-19 14:00:00
Last updated 2024-08-06 10:50:18
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The ARM image loading functionality in Xen 4.4.x does not properly validate kernel length, which allows local users to read system memory or cause a denial of service (crash) via a crafted 32-bit ARM guest kernel in an image, which triggers a buffer overflow.