CVE Vulnerabilities

CVE-2012-0218

Published: Dec 03, 2012 | Modified: Oct 11, 2013
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
1.9 LOW
AV:L/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
4 MODERATE
AV:L/AC:H/Au:N/C:N/I:N/A:C
RedHat/V3
Ubuntu
LOW

Xen 3.4, 4.0, and 4.1, when the guest OS has not registered a handler for a syscall or sysenter instruction, does not properly clear a flag for exception injection when injecting a General Protection Fault, which allows local PV guest OS users to cause a denial of service (guest crash) by later triggering an exception that would normally be handled within Xen.

Affected Software

Name Vendor Start Version End Version
Xen Xen 3.4.0 (including) 3.4.0 (including)
Xen Xen 4.0.0 (including) 4.0.0 (including)
Xen Xen 4.1.0 (including) 4.1.0 (including)
Xen Ubuntu oneiric *
Xen Ubuntu precise *
Xen Ubuntu upstream *
Xen-3.1 Ubuntu hardy *
Xen-3.2 Ubuntu hardy *
Xen-3.3 Ubuntu lucid *
Xen-3.3 Ubuntu natty *

References