PT-2012-5998 · Xen+2 · Xen+2

Publicado

2012-12-04

·

Atualizado

2024-06-15

·

CVE-2012-5513

CVSS v2.0

6.9

Média

VetorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Xen versions prior to 4.2
Description The issue is related to the XENMEM exchange handler, which does not properly check the memory address. This allows local PV guest OS administrators to cause a denial of service (crash) or possibly gain privileges via unspecified vectors that overwrite memory in the hypervisor reserved range.
Recommendations For Xen versions prior to 4.2, update to a version that includes the fix for this issue to prevent potential denial of service or privilege escalation.

Correção

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-5513
DSA-2582-1
OPENSUSE-SU-2012_1685-1
OPENSUSE-SU-2012_1687-1
OPENSUSE-SU-2013_0133-1
OPENSUSE-SU-2024:10196-1
RHSA-2012:1540
RHSA-2012_1540
SUSE-SU-2012_1606-1
SUSE-SU-2015:0940-1
SUSE-SU-2015:0944-1

Produtos afetados

Red Hat
Suse
Xen