CVE-2014-4021
published 2014-06-18CVE-2014-4021: Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from guests, which allows local guest OS users to obtain sensitive information via…
PriorityP47low2.7CVSS 2.0
AVAACLAuSCPINAN
EPSS
0.68%
48.4th percentile
Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from guests, which allows local guest OS users to obtain sensitive information via unspecified vectors.
Affected
28 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | xen | < xen 4.4.1-1 (bookworm) | xen 4.4.1-1 (bookworm) |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | >= 0 < 4.4.1-1 | 4.4.1-1 |
CVSS provenance
nvdv2.02.7LOWAV:A/AC:L/Au:S/C:P/I:N/A:N
osv2.7LOW
vendor_debian2.7LOW
vendor_redhat2.7LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-h82g-hrcm-j7gq: Xen 3
ghsa_unreviewed·2022-05-14
CVE-2014-4021 [LOW] CWE-119 GHSA-h82g-hrcm-j7gq: Xen 3
Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from guests, which allows local guest OS users to obtain sensitive information via unspecified vectors.
OSV
CVE-2014-4021: Xen 3
osv·2014-06-18·CVSS 2.7
CVE-2014-4021 [LOW] CVE-2014-4021: Xen 3
Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from guests, which allows local guest OS users to obtain sensitive information via unspecified vectors.
Red Hat
xen: Hypervisor heap contents leaked to guests (xsa-100)
vendor_redhat·2014-06-17·CVSS 2.7
CVE-2014-4021 [LOW] CWE-244 xen: Hypervisor heap contents leaked to guests (xsa-100)
xen: Hypervisor heap contents leaked to guests (xsa-100)
Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from guests, which allows local guest OS users to obtain sensitive information via unspecified vectors.
It was found that the Xen hypervisor implementation did not properly clean memory pages previously allocated by the hypervisor. A privileged guest user could potentially use this flaw to read data relating to other guests or the hypervisor itself.
Debian
CVE-2014-4021: xen - Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from gues...
vendor_debian·2014·CVSS 2.7
CVE-2014-4021 [LOW] CVE-2014-4021: xen - Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from gues...
Xen 3.2.x through 4.4.x does not properly clean memory pages recovered from guests, which allows local guest OS users to obtain sensitive information via unspecified vectors.
Scope: local
bookworm: resolved (fixed in 4.4.1-1)
bullseye: resolved (fixed in 4.4.1-1)
forky: resolved (fixed in 4.4.1-1)
sid: resolved (fixed in 4.4.1-1)
trixie: resolved (fixed in 4.4.1-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-4021 xen: Hypervisor heap contents leaked to guests (xsa-100) [fedora-all]
bugzilla·2014-06-17·CVSS 2.7
CVE-2014-4021 [LOW] CVE-2014-4021 xen: Hypervisor heap contents leaked to guests (xsa-100) [fedora-all]
CVE-2014-4021 xen: Hypervisor heap contents leaked to guests (xsa-100) [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, use the bodhi submission link noted
in the next comment(s). This will include the bug IDs of this tracking
bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
NOTE: this issue affects mul
Bugzilla
CVE-2014-4021 xen: Hypervisor heap contents leaked to guests (xsa-100)
bugzilla·2014-06-02·CVSS 2.7
CVE-2014-4021 [LOW] CVE-2014-4021 xen: Hypervisor heap contents leaked to guests (xsa-100)
CVE-2014-4021 xen: Hypervisor heap contents leaked to guests (xsa-100)
While memory pages recovered from dying guests are being cleaned to avoid
leaking sensitive information to other guests, memory pages that were in
use by the hypervisor and are eligible to be allocated to guests weren't
being properly cleaned. Such exposure of information would happen through
memory pages freshly allocated to or by the guest.
A malicious guest might be able to read data relating to other guests
or the hypervisor itself.
Acknowledgements:
Red Hat would like to thank the Xen project for reporting this issue. Upstream acknowledges Jan Beulich as the original reporter.
Discussion:
Statement:
(none)
---
Now public via --
http://seclists.org/oss-sec/2014/q2/549
---
Created xen tracking bugs for th
http://linux.oracle.com/errata/ELSA-2014-0926-1.htmlhttp://linux.oracle.com/errata/ELSA-2014-0926.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2014-July/135068.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2014-July/135071.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-10/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-10/msg00003.htmlhttp://secunia.com/advisories/59208http://secunia.com/advisories/60027http://secunia.com/advisories/60130http://secunia.com/advisories/60471http://security.gentoo.org/glsa/glsa-201407-03.xmlhttp://support.citrix.com/article/CTX140984http://www.debian.org/security/2014/dsa-3006http://www.securityfocus.com/bid/68070http://www.securitytracker.com/id/1030442http://xenbits.xen.org/xsa/advisory-100.htmlhttp://linux.oracle.com/errata/ELSA-2014-0926-1.htmlhttp://linux.oracle.com/errata/ELSA-2014-0926.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2014-July/135068.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2014-July/135071.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-10/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2014-10/msg00003.htmlhttp://secunia.com/advisories/59208http://secunia.com/advisories/60027http://secunia.com/advisories/60130http://secunia.com/advisories/60471http://security.gentoo.org/glsa/glsa-201407-03.xmlhttp://support.citrix.com/article/CTX140984http://www.debian.org/security/2014/dsa-3006http://www.securityfocus.com/bid/68070http://www.securitytracker.com/id/1030442http://xenbits.xen.org/xsa/advisory-100.html
2014-06-18
Published