CVE Vulnerabilities

CVE-2012-4535

Published: Nov 21, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
1.9 LOW
AV:L/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
5.5 MODERATE
AV:A/AC:L/Au:S/C:N/I:N/A:C
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Xen 3.4 through 4.2, and possibly earlier versions, allows local guest OS administrators to cause a denial of service (Xen infinite loop and physical CPU consumption) by setting a VCPU with an inappropriate deadline.

Affected Software

NameVendorStart VersionEnd Version
XenXen3.4.0 (including)3.4.0 (including)
XenXen3.4.1 (including)3.4.1 (including)
XenXen3.4.2 (including)3.4.2 (including)
XenXen3.4.3 (including)3.4.3 (including)
XenXen3.4.4 (including)3.4.4 (including)
XenXen4.0.0 (including)4.0.0 (including)
XenXen4.0.1 (including)4.0.1 (including)
XenXen4.0.2 (including)4.0.2 (including)
XenXen4.0.3 (including)4.0.3 (including)
XenXen4.0.4 (including)4.0.4 (including)
XenXen4.1.0 (including)4.1.0 (including)
XenXen4.1.1 (including)4.1.1 (including)
XenXen4.1.2 (including)4.1.2 (including)
XenXen4.1.3 (including)4.1.3 (including)
XenXen4.2.0 (including)4.2.0 (including)
Red Hat Enterprise Linux 5RedHatkernel-0:2.6.18-308.24.1.el5*
XenUbuntudevel*
XenUbuntuoneiric*
XenUbuntuprecise*
XenUbuntuquantal*
XenUbunturaring*
XenUbuntusaucy*
Xen-3.1Ubuntuhardy*
Xen-3.2Ubuntuhardy*
Xen-3.3Ubuntulucid*

References