Lucene search

K
ubuntucveUbuntu.comUB:CVE-2012-5510
HistoryDec 13, 2012 - 12:00 a.m.

CVE-2012-5510

2012-12-1300:00:00
ubuntu.com
ubuntu.com
14

CVSS2

4.7

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:N/A:C

EPSS

0.001

Percentile

28.1%

Xen 4.x, when downgrading the grant table version, does not properly remove
the status page from the tracking list when freeing the page, which allows
local guest OS administrators to cause a denial of service (hypervisor
crash) via unspecified vectors.

Bugs

Notes

Author Note
jdstrand xen 4 only
OSVersionArchitecturePackageVersionFilename
ubuntu11.10noarchxen< 4.1.1-2ubuntu4.3UNKNOWN
ubuntu12.04noarchxen< 4.1.2-2ubuntu2.3UNKNOWN
ubuntu12.10noarchxen< 4.1.3-3ubuntu1.1UNKNOWN

CVSS2

4.7

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:N/A:C

EPSS

0.001

Percentile

28.1%