CVE
- Id
- 57782
- CVE No.
- CVE-2012-4539
- Status
- Candidate
- Description
- Xen 4.0 through 4.2, when running 32-bit x86 PV guests on 64-bit hypervisors, allows local guest OS administrators to cause a denial of service (infinite loop and hang or crash) via invalid arguments to GNTTABOP_get_status_frames, aka "Grant table hypercall infinite loop DoS vulnerability."
- Phase
- Assigned (20120821)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
| Id | CVE Id | CVE No. | Reference | Actions |
|---|---|---|---|---|
| 595751 | 57782 | CVE-2012-4539 | MLIST:[Xen-announce] 20121113 Xen Security Advisory 24 (CVE-2012-4539) - Grant table hypercall infinite loop DoS vulnerability | View |
| 595752 | 57782 | CVE-2012-4539 | URL:http://lists.xen.org/archives/html/xen-announce/2012-11/msg00002.html | View |
| 595753 | 57782 | CVE-2012-4539 | MLIST:[oss-security] 20121113 Xen Security Advisory 24 (CVE-2012-4539) - Grant table hypercall infinite loop DoS vulnerability | View |
| 595754 | 57782 | CVE-2012-4539 | URL:http://www.openwall.com/lists/oss-security/2012/11/13/4 | View |
| 595755 | 57782 | CVE-2012-4539 | DEBIAN:DSA-2582 | View |
| 595756 | 57782 | CVE-2012-4539 | URL:http://www.debian.org/security/2012/dsa-2582 | View |
| 595757 | 57782 | CVE-2012-4539 | GENTOO:GLSA-201309-24 | View |
| 595758 | 57782 | CVE-2012-4539 | URL:http://security.gentoo.org/glsa/glsa-201309-24.xml | View |
| 595759 | 57782 | CVE-2012-4539 | SUSE:SUSE-SU-2012:1615 | View |
| 595760 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-12/msg00001.html | View |
| 595761 | 57782 | CVE-2012-4539 | SUSE:SUSE-SU-2012:1486 | View |
| 595762 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-11/msg00008.html | View |
| 595763 | 57782 | CVE-2012-4539 | SUSE:SUSE-SU-2012:1487 | View |
| 595764 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-11/msg00009.html | View |
| 595765 | 57782 | CVE-2012-4539 | SUSE:openSUSE-SU-2012:1572 | View |
| 595766 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-11/msg00017.html | View |
| 595767 | 57782 | CVE-2012-4539 | SUSE:openSUSE-SU-2012:1685 | View |
| 595768 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-12/msg00018.html | View |
| 595769 | 57782 | CVE-2012-4539 | SUSE:SUSE-SU-2014:0446 | View |
| 595770 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00021.html | View |
| 595771 | 57782 | CVE-2012-4539 | SUSE:openSUSE-SU-2012:1573 | View |
| 595772 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-11/msg00018.html | View |
| 595773 | 57782 | CVE-2012-4539 | BID:56498 | View |
| 595774 | 57782 | CVE-2012-4539 | URL:http://www.securityfocus.com/bid/56498 | View |
| 595775 | 57782 | CVE-2012-4539 | OSVDB:87305 | View |
| 595776 | 57782 | CVE-2012-4539 | URL:http://www.osvdb.org/87305 | View |
| 595777 | 57782 | CVE-2012-4539 | SECTRACK:1027763 | View |
| 595778 | 57782 | CVE-2012-4539 | URL:http://www.securitytracker.com/id?1027763 | View |
| 595779 | 57782 | CVE-2012-4539 | SECUNIA:51468 | View |
| 595780 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/51468 | View |
| 595781 | 57782 | CVE-2012-4539 | SECUNIA:51200 | View |
| 595782 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/51200 | View |
| 595783 | 57782 | CVE-2012-4539 | SECUNIA:51413 | View |
| 595784 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/51413 | View |
| 595785 | 57782 | CVE-2012-4539 | SECUNIA:51324 | View |
| 595786 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/51324 | View |
| 595787 | 57782 | CVE-2012-4539 | SECUNIA:51352 | View |
| 595788 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/51352 | View |
| 595789 | 57782 | CVE-2012-4539 | SECUNIA:55082 | View |
| 595790 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/55082 | View |
| 595791 | 57782 | CVE-2012-4539 | XF:xen-gnttabopgetstatus-dos(80026) | View |
Related JVN
| Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 29465 | JVNDB-2012-005172 | Xen の PV ドメインビルダーにおけるサービス運用妨害 (DoS) の脆弱性 | Xen の PV ドメインビルダーは、カーネル、または RAMディスクの (1) 展開前または (2) 展開後のサイズを確認しないため、サービス運用妨害 (ドメイン 0 のメモリ消費) 状態となる脆弱性が存在します。 | CVE-2012-4544 | 57782 | 2.1 | http://jvndb.jvn.jp/ja/contents/2012/JVNDB-2012-005172.html | View |