CVE
- Id
- 57782
- CVE No.
- CVE-2012-4539
- Status
- Candidate
- Description
- Xen 4.0 through 4.2, when running 32-bit x86 PV guests on 64-bit hypervisors, allows local guest OS administrators to cause a denial of service (infinite loop and hang or crash) via invalid arguments to GNTTABOP_get_status_frames, aka "Grant table hypercall infinite loop DoS vulnerability."
- Phase
- Assigned (20120821)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
595751 | 57782 | CVE-2012-4539 | MLIST:[Xen-announce] 20121113 Xen Security Advisory 24 (CVE-2012-4539) - Grant table hypercall infinite loop DoS vulnerability | View |
595752 | 57782 | CVE-2012-4539 | URL:http://lists.xen.org/archives/html/xen-announce/2012-11/msg00002.html | View |
595753 | 57782 | CVE-2012-4539 | MLIST:[oss-security] 20121113 Xen Security Advisory 24 (CVE-2012-4539) - Grant table hypercall infinite loop DoS vulnerability | View |
595754 | 57782 | CVE-2012-4539 | URL:http://www.openwall.com/lists/oss-security/2012/11/13/4 | View |
595755 | 57782 | CVE-2012-4539 | DEBIAN:DSA-2582 | View |
595756 | 57782 | CVE-2012-4539 | URL:http://www.debian.org/security/2012/dsa-2582 | View |
595757 | 57782 | CVE-2012-4539 | GENTOO:GLSA-201309-24 | View |
595758 | 57782 | CVE-2012-4539 | URL:http://security.gentoo.org/glsa/glsa-201309-24.xml | View |
595759 | 57782 | CVE-2012-4539 | SUSE:SUSE-SU-2012:1615 | View |
595760 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-12/msg00001.html | View |
595761 | 57782 | CVE-2012-4539 | SUSE:SUSE-SU-2012:1486 | View |
595762 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-11/msg00008.html | View |
595763 | 57782 | CVE-2012-4539 | SUSE:SUSE-SU-2012:1487 | View |
595764 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-11/msg00009.html | View |
595765 | 57782 | CVE-2012-4539 | SUSE:openSUSE-SU-2012:1572 | View |
595766 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-11/msg00017.html | View |
595767 | 57782 | CVE-2012-4539 | SUSE:openSUSE-SU-2012:1685 | View |
595768 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-12/msg00018.html | View |
595769 | 57782 | CVE-2012-4539 | SUSE:SUSE-SU-2014:0446 | View |
595770 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00021.html | View |
595771 | 57782 | CVE-2012-4539 | SUSE:openSUSE-SU-2012:1573 | View |
595772 | 57782 | CVE-2012-4539 | URL:http://lists.opensuse.org/opensuse-security-announce/2012-11/msg00018.html | View |
595773 | 57782 | CVE-2012-4539 | BID:56498 | View |
595774 | 57782 | CVE-2012-4539 | URL:http://www.securityfocus.com/bid/56498 | View |
595775 | 57782 | CVE-2012-4539 | OSVDB:87305 | View |
595776 | 57782 | CVE-2012-4539 | URL:http://www.osvdb.org/87305 | View |
595777 | 57782 | CVE-2012-4539 | SECTRACK:1027763 | View |
595778 | 57782 | CVE-2012-4539 | URL:http://www.securitytracker.com/id?1027763 | View |
595779 | 57782 | CVE-2012-4539 | SECUNIA:51468 | View |
595780 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/51468 | View |
595781 | 57782 | CVE-2012-4539 | SECUNIA:51200 | View |
595782 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/51200 | View |
595783 | 57782 | CVE-2012-4539 | SECUNIA:51413 | View |
595784 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/51413 | View |
595785 | 57782 | CVE-2012-4539 | SECUNIA:51324 | View |
595786 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/51324 | View |
595787 | 57782 | CVE-2012-4539 | SECUNIA:51352 | View |
595788 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/51352 | View |
595789 | 57782 | CVE-2012-4539 | SECUNIA:55082 | View |
595790 | 57782 | CVE-2012-4539 | URL:http://secunia.com/advisories/55082 | View |
595791 | 57782 | CVE-2012-4539 | XF:xen-gnttabopgetstatus-dos(80026) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
29465 | JVNDB-2012-005172 | Xen の PV ドメインビルダーにおけるサービス運用妨害 (DoS) の脆弱性 | Xen の PV ドメインビルダーは、カーネル、または RAMディスクの (1) 展開前または (2) 展開後のサイズを確認しないため、サービス運用妨害 (ドメイン 0 のメモリ消費) 状態となる脆弱性が存在します。 | CVE-2012-4544 | 57782 | 2.1 | http://jvndb.jvn.jp/ja/contents/2012/JVNDB-2012-005172.html | View |