UBUNTU-CVE-2015-4163

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 15 Jun 2015, 15:59
Last modified:22 Apr 2026, 10:09

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

15 Jun 2015, 15:59
Published
Vulnerability first disclosed
22 Apr 2026, 10:09
Last Modified
Vulnerability information updated

Description

GNTTABOP_swap_grant_ref in Xen 4.2 through 4.5 does not check the grant table operation version, which allows local guest domains to cause a denial of service (NULL pointer dereference) via a hypercall without a GNTTABOP_setup_table or GNTTABOP_set_version.

Affected Systems

  • ubuntuxen

    < 4.4.2-0ubuntu0.14.04.2

References (3)