CVE Vulnerabilities

CVE-2012-5514

Published: Dec 13, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.7 MEDIUM
AV:L/AC:M/Au:N/C:N/I:N/A:C
RedHat/V2
5.5 MODERATE
AV:A/AC:L/Au:S/C:N/I:N/A:C
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The guest_physmap_mark_populate_on_demand function in Xen 4.2 and earlier does not properly unlock the subject GFNs when checking if they are in use, which allows local guest HVM administrators to cause a denial of service (hang) via unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
XenXen*4.2.0 (including)
XenXen3.0.2 (including)3.0.2 (including)
XenXen3.0.3 (including)3.0.3 (including)
XenXen3.0.4 (including)3.0.4 (including)
XenXen3.1.3 (including)3.1.3 (including)
XenXen3.1.4 (including)3.1.4 (including)
XenXen3.2.0 (including)3.2.0 (including)
XenXen3.2.1 (including)3.2.1 (including)
XenXen3.2.2 (including)3.2.2 (including)
XenXen3.2.3 (including)3.2.3 (including)
XenXen3.3.0 (including)3.3.0 (including)
XenXen3.3.1 (including)3.3.1 (including)
XenXen3.3.2 (including)3.3.2 (including)
XenXen3.4.0 (including)3.4.0 (including)
XenXen3.4.1 (including)3.4.1 (including)
XenXen3.4.2 (including)3.4.2 (including)
XenXen3.4.3 (including)3.4.3 (including)
XenXen3.4.4 (including)3.4.4 (including)
XenXen4.0.0 (including)4.0.0 (including)
XenXen4.0.1 (including)4.0.1 (including)
XenXen4.0.2 (including)4.0.2 (including)
XenXen4.0.3 (including)4.0.3 (including)
XenXen4.0.4 (including)4.0.4 (including)
XenXen4.1.0 (including)4.1.0 (including)
XenXen4.1.1 (including)4.1.1 (including)
XenXen4.1.2 (including)4.1.2 (including)
XenXen4.1.3 (including)4.1.3 (including)
XenUbuntudevel*
XenUbuntuoneiric*
XenUbuntuprecise*
XenUbuntuquantal*

References