Lucene search

K
cve[email protected]CVE-2012-4411
HistoryNov 23, 2012 - 8:55 p.m.

CVE-2012-4411

2012-11-2320:55:03
CWE-200
web.nvd.nist.gov
39
xen
graphical console
sensitive information
qemu monitor
cve-2012-4411
nvd

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:S/C:C/I:N/A:N

8.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.0%

The graphical console in Xen 4.0, 4.1 and 4.2 allows local OS guest administrators to obtain sensitive host resource information via the qemu monitor. NOTE: this might be a duplicate of CVE-2007-0998.

Affected configurations

NVD
Node
xenxenMatch4.0.0
OR
xenxenMatch4.1.0
OR
xenxenMatch4.2.0

References

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:S/C:C/I:N/A:N

8.7 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.0%