Lucene search

K
nvd[email protected]NVD:CVE-2012-3433
HistoryNov 24, 2012 - 8:55 p.m.

CVE-2012-3433

2012-11-2420:55:02
CWE-399
web.nvd.nist.gov
1

4.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

5.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.7%

Xen 4.0 and 4.1 allows local HVM guest OS kernels to cause a denial of service (domain 0 VCPU hang and kernel panic) by modifying the physical address space in a way that triggers excessive shared page search time during the p2m teardown.

Affected configurations

NVD
Node
xenxenMatch4.0.0
OR
xenxenMatch4.1.0

4.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

5.7 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.7%