PT-2012-5999 · Xen+1 · Xen+1
Published
2012-12-13
·
Updated
2024-06-15
·
CVE-2012-5514
CVSS v2.0
4.7
Medium
| Vector | AV:L/AC:M/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Xen versions 4.2 and earlier
Description
The issue is related to the guest physmap mark populate on demand function, which does not properly unlock the subject GFNs when checking if they are in use. This allows local guest HVM administrators to cause a denial of service (hang) via unspecified vectors.
Recommendations
For versions 4.2 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Suse
Xen