CVE-2012-4537
- EPSS 0.11%
- Veröffentlicht 21.11.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Xen 3.4 through 4.2, and possibly earlier versions, does not properly synchronize the p2m and m2p tables when the set_p2m_entry function fails, which allows local HVM guest OS administrators to cause a denial of service (memory consumption and assert...
CVE-2012-4539
- EPSS 0.07%
- Veröffentlicht 21.11.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Xen 4.0 through 4.2, when running 32-bit x86 PV guests on 64-bit hypervisors, allows local guest OS administrators to cause a denial of service (infinite loop and hang or crash) via invalid arguments to GNTTABOP_get_status_frames, aka "Grant table hy...
CVE-2012-4544
- EPSS 0.09%
- Veröffentlicht 31.10.2012 16:55:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
The PV domain builder in Xen 4.2 and earlier does not validate the size of the kernel or ramdisk (1) before or (2) after decompression, which allows local guest administrators to cause a denial of service (domain 0 memory consumption) via a crafted (...
CVE-2012-2625
- EPSS 0.31%
- Veröffentlicht 31.10.2012 16:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The PyGrub boot loader in Xen unstable before changeset 25589:60f09d1ab1fe, 4.2.x, and 4.1.x allows local para-virtualized guest users to cause a denial of service (memory consumption) via a large (1) bzip2 or (2) lzma compressed kernel image.
CVE-2012-0217
- EPSS 88%
- Veröffentlicht 12.06.2012 22:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Oracle Solaris 11 and earlier; illumos before r13724; Joyent SmartOS before 20120614T184600Z; FreeBSD before 9.0-R...