← Back

CVE-2012-3495

nvd nist
Published: Nov 23, 2012Modified: Apr 29, 2026

JSON object

Loading...
6.1
Vector
AV:L/AC:L/Au:N/C:P/I:P/A:C
Exploitability: 3.9 / Impact: 8.5
Source: NVD

Description

The physdev_get_free_pirq hypercall in arch/x86/physdev.c in Xen 4.1.x and Citrix XenServer 6.0.2 and earlier uses the return value of the get_free_pirq function as an array index without checking that the return value indicates an error, which allows guest OS users to cause a denial of service (invalid memory write and host crash) and possibly gain privileges via unspecified vectors.

Affected (11)

Products: Citrix: Xenserver · Xen: Xen
1 product
Xenserver
1 product
Xen
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Citrix
Up to 6.0.2
Version 5.0
Version 5.5
Version 5.6
Version 5.6 fp1
Version 5.6 sp2
Version 6.0
Xen
Version 4.1.0
Version 4.1.1
Version 4.1.2
Version 4.1.3

References (32)

Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.