Lucene search

K
ubuntucveUbuntu.comUB:CVE-2012-3433
HistoryAug 09, 2012 - 12:00 a.m.

CVE-2012-3433

2012-08-0900:00:00
ubuntu.com
ubuntu.com
15

4.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

0.001 Low

EPSS

Percentile

26.7%

Xen 4.0 and 4.1 allows local HVM guest OS kernels to cause a denial of
service (domain 0 VCPU hang and kernel panic) by modifying the physical
address space in a way that triggers excessive shared page search time
during the p2m teardown.

Bugs

Notes

Author Note
tyhicks only affects Xen 4.0 and 4.1
mdeslaur This is XSA-11
OSVersionArchitecturePackageVersionFilename
ubuntu11.10noarchxen< 4.1.1-2ubuntu4.4UNKNOWN
ubuntu12.04noarchxen< 4.1.2-2ubuntu2.4UNKNOWN

4.9 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:N/I:N/A:C

0.001 Low

EPSS

Percentile

26.7%