CVE-2012-2934
- EPSS 0.16%
- Published 03.12.2012 21:55:01
- Last modified 11.04.2025 00:51:21
Xen 4.0, and 4.1, when running a 64-bit PV guest on "older" AMD CPUs, does not properly protect against a certain AMD processor bug, which allows local guest OS users to cause a denial of service (host hang) via sequential execution of instructions a...
CVE-2012-3432
- EPSS 1.42%
- Published 03.12.2012 21:55:01
- Last modified 11.04.2025 00:51:21
The handle_mmio function in arch/x86/hvm/io.c in the MMIO operations emulator for Xen 3.3 and 4.x, when running an HVM guest, does not properly reset certain state information between emulation cycles, which allows local guest OS users to cause a den...
CVE-2012-4538
- EPSS 0.05%
- Published 24.11.2012 20:55:03
- Last modified 11.04.2025 00:51:21
The HVMOP_pagetable_dying hypercall in Xen 4.0, 4.1, and 4.2 does not properly check the pagetable state when running on shadow pagetables, which allows a local HVM guest OS to cause a denial of service (hypervisor crash) via unspecified vectors.
CVE-2012-3433
- EPSS 0.08%
- Published 24.11.2012 20:55:02
- Last modified 11.04.2025 00:51:21
Xen 4.0 and 4.1 allows local HVM guest OS kernels to cause a denial of service (domain 0 VCPU hang and kernel panic) by modifying the physical address space in a way that triggers excessive shared page search time during the p2m teardown.
CVE-2012-6030
- EPSS 0.06%
- Published 23.11.2012 20:55:04
- Last modified 11.04.2025 00:51:21
The do_tmem_op function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a denial of service (host crash) and possibly have other unspecified impacts via unspecified vectors related to "broken locking che...
CVE-2012-6031
- EPSS 0.06%
- Published 23.11.2012 20:55:04
- Last modified 11.04.2025 00:51:21
The do_tmem_get function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a denial of service (CPU hang and host crash) via unspecified vectors related to a spinlock being held in the "bad_copy error path...
CVE-2012-6032
- EPSS 0.11%
- Published 23.11.2012 20:55:04
- Last modified 11.04.2025 00:51:21
Multiple integer overflows in the (1) tmh_copy_from_client and (2) tmh_copy_to_client functions in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a denial of service (memory corruption and host crash) via ...
CVE-2012-6033
- EPSS 0.07%
- Published 23.11.2012 20:55:04
- Last modified 11.04.2025 00:51:21
The do_tmem_control function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 does not properly check privileges, which allows local guest OS users to access control stack operations via unspecified vectors. NOTE: this issue was originally...
CVE-2012-6034
- EPSS 0.13%
- Published 23.11.2012 20:55:04
- Last modified 11.04.2025 00:51:21
The (1) tmemc_save_get_next_page and (2) tmemc_save_get_next_inv functions and the (3) TMEMC_SAVE_GET_POOL_UUID sub-operation in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 "do not check incoming guest output buffer pointers," which allow...
CVE-2012-6035
- EPSS 0.11%
- Published 23.11.2012 20:55:04
- Last modified 11.04.2025 00:51:21
The do_tmem_destroy_pool function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 does not properly validate pool ids, which allows local guest OS users to cause a denial of service (memory corruption and host crash) or execute arbitrary c...