4.7
CVSSv2

CVE-2012-5511

Published: 13/12/2012 Updated: 29/08/2017
CVSS v2 Base Score: 4.7 | Impact Score: 6.9 | Exploitability Score: 3.4
VMScore: 418
Vector: AV:L/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

Stack-based buffer overflow in the dirty video RAM tracking functionality in Xen 3.4 up to and including 4.1 allows local HVM guest OS administrators to cause a denial of service (crash) via a large bitmap image.

Vulnerable Product Search on Vulmon Subscribe to Product

xen xen 3.4.0

xen xen 4.0.3

xen xen 4.0.4

xen xen 4.0.1

xen xen 4.0.2

xen xen 3.4.1

xen xen 3.4.2

xen xen 3.4.3

xen xen 4.1.0

xen xen 3.4.4

xen xen 4.0.0

Vendor Advisories

Multiple vulnerabilities have been discovered in the Xen hypervisor The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2012-4544 Insufficient validation of kernel or ramdisk sizes in the Xen PV domain builder could result in denial of service CVE-2012-5511 Several HVM control operations performed ...