CVE-2015-4104: Xen
High severity, CVSS 7.8. EPSS: 3.4% chance of exploitation in the next 30 days.
Xen 3.3.x through 4.5.x does not properly restrict access to PCI MSI mask bits, which allows local x86 HVM guest users to cause a denial of service (unexpected interrupt and host crash) via unspecified vectors.
Affected products
- Xen Xen: version 3.3.0 only; version 3.3.1 only; version 3.3.2 only; version 3.4.0 only; version 3.4.1 only; version 3.4.2 only; …
Published 2015-06-03. Last modified 2026-06-17.