Xen 4.0.2 through 4.0.4, 4.1.x, and 4.2.x allows local PV guest users to cause a denial of service (hypervisor crash) via certain bit combinations to the XSETBV instruction.
| Software | From | Fixed in |
|---|---|---|
| xen / xen | 4.1.5 | 4.1.5.x |
| xen / xen | 4.2.2 | 4.2.2.x |
| xen / xen | 4.0.4 | 4.0.4.x |
| xen / xen | 4.0.2 | 4.0.2.x |
| xen / xen | 4.1.2 | 4.1.2.x |
| xen / xen | 4.1.1 | 4.1.1.x |
| xen / xen | 4.2.0 | 4.2.0.x |
| xen / xen | 4.1.0 | 4.1.0.x |
| xen / xen | 4.1.3 | 4.1.3.x |
| xen / xen | 4.1.4 | 4.1.4.x |
| xen / xen | 4.2.1 | 4.2.1.x |
| xen / xen | 4.0.3 | 4.0.3.x |