#VU32427 Input validation error in Xen - CVE-2015-0268
Published: February 16, 2015 / Updated: July 28, 2020
Xen
Xen Project
Description
The vulnerability allows a local non-authenticated attacker to perform a denial of service (DoS) attack.
The vgic_v2_to_sgi function in arch/arm/vgic-v2.c in Xen 4.5.x, when running on ARM hardware with general interrupt controller (GIC) version 2, allows local guest users to cause a denial of service (host crash) by writing an invalid value to the GICD.SGIR register.