Xen 4.0.2 through 4.0.4, 4.1.x, and 4.2.x allows local PV guest users to cause a denial of service (hypervisor crash) via certain bit combinations to the XSETBV instruction.
http://www.securitytracker.com/id/1028613
http://www.openwall.com/lists/oss-security/2013/06/03/3
http://www.debian.org/security/2014/dsa-3006