PT-2012-5998 · Xen+2 · Xen+2

Published

2012-12-04

·

Updated

2024-06-15

·

CVE-2012-5513

CVSS v2.0

6.9

Medium

VectorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Xen versions prior to 4.2
Description The issue is related to the XENMEM exchange handler, which does not properly check the memory address. This allows local PV guest OS administrators to cause a denial of service (crash) or possibly gain privileges via unspecified vectors that overwrite memory in the hypervisor reserved range.
Recommendations For Xen versions prior to 4.2, update to a version that includes the fix for this issue to prevent potential denial of service or privilege escalation.

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2012-5513
DSA-2582-1
OPENSUSE-SU-2012_1685-1
OPENSUSE-SU-2012_1687-1
OPENSUSE-SU-2013_0133-1
OPENSUSE-SU-2024:10196-1
RHSA-2012:1540
RHSA-2012_1540
SUSE-SU-2012_1606-1
SUSE-SU-2015:0940-1
SUSE-SU-2015:0944-1

Affected Products

Red Hat
Suse
Xen