4.6
CVSSv2

CVE-2012-4411

Published: 23/11/2012 Updated: 07/11/2023
CVSS v2 Base Score: 4.6 | Impact Score: 6.9 | Exploitability Score: 3.1
VMScore: 409
Vector: AV:L/AC:L/Au:S/C:C/I:N/A:N

Vulnerability Summary

The graphical console in Xen 4.0, 4.1 and 4.2 allows local OS guest administrators to obtain sensitive host resource information via the qemu monitor. NOTE: this might be a duplicate of CVE-2007-0998.

Vulnerable Product Search on Vulmon Subscribe to Product

xen xen 4.0.0

xen xen 4.2.0

xen xen 4.1.0

Vendor Advisories

Multiple vulnerabilities have been discovered in xen-qemu-dm-40, the Xen QEMU Device Model virtual machine hardware emulator The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2012-3515: The device model for HVM domains does not properly handle VT100 escape sequences when emulating certain devices wit ...