common/spinlock.c in Xen 4.4.x and earlier does not properly handle read and write locks, which allows local x86 guest users to cause a denial of service (write denial or NMI watchdog timeout and host crash) via a large number of read requests, a different vulnerability to CVE-2014-9066.
2014-12-09T23:59:08.037
2025-04-12T10:46:40.837
Deferred
CVSSv2: 4.4 (MEDIUM)
AV:L/AC:M/Au:S/C:N/I:N/A:C
2.7
6.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | xen | xen | ≤ 4.4.1 | Yes |
| Operating System | opensuse | opensuse | 13.1 | Yes |
| Operating System | opensuse | opensuse | 13.2 | Yes |