Lucene search

K
cve[email protected]CVE-2012-5511
HistoryDec 13, 2012 - 11:53 a.m.

CVE-2012-5511

2012-12-1311:53:48
CWE-119
web.nvd.nist.gov
48
cve-2012-5511
xen
buffer overflow
denial of service
nvd
security vulnerability

4.7 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:N/A:C

4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.0%

Stack-based buffer overflow in the dirty video RAM tracking functionality in Xen 3.4 through 4.1 allows local HVM guest OS administrators to cause a denial of service (crash) via a large bitmap image.

Affected configurations

NVD
Node
xenxenMatch3.4.0
OR
xenxenMatch3.4.1
OR
xenxenMatch3.4.2
OR
xenxenMatch3.4.3
OR
xenxenMatch3.4.4
OR
xenxenMatch4.0.0
OR
xenxenMatch4.0.1
OR
xenxenMatch4.0.2
OR
xenxenMatch4.0.3
OR
xenxenMatch4.0.4
OR
xenxenMatch4.1.0

References

4.7 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:N/A:C

4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.0%