Novell Home

CVE-2012-4544

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2012-4544 at MITRE

Description

The PV domain builder in Xen 4.2 and earlier does not validate the size of the kernel or ramdisk (1) before or (2) after decompression, which allows local guest administrators to cause a denial of service (domain 0 memory consumption) via a crafted (a) kernel or (b) ramdisk.

NVD CVSS v2 Base Score: 2.1 (AV:L/AC:L/Au:N/C:N/I:N/A:P)

Novell/SUSE information

Novell Bugzilla entries: 779212, 786516, 786518, 786519, 786520, 787163, 840592

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise 10 SP4 DEBUGINFO for AMD64 and Intel EM64T
SUSE Linux Enterprise 10 SP4 DEBUGINFO for x86
  • xen-debuginfo >= 3.2.3_17040_46-0.7.1
Builds
ZYPP Patch Nr: 8791
SUSE Linux Enterprise Server 10 SP4 LTSS for x86
  • xen >= 3.2.3_17040_46-0.7.1
  • xen-devel >= 3.2.3_17040_46-0.7.1
  • xen-doc-html >= 3.2.3_17040_46-0.7.1
  • xen-doc-pdf >= 3.2.3_17040_46-0.7.1
  • xen-doc-ps >= 3.2.3_17040_46-0.7.1
  • xen-kmp-bigsmp >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-kmp-debug >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-kmp-default >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-kmp-kdump >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-kmp-kdumppae >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-kmp-smp >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-kmp-vmi >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-kmp-vmipae >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-libs >= 3.2.3_17040_46-0.7.1
  • xen-tools >= 3.2.3_17040_46-0.7.1
  • xen-tools-domU >= 3.2.3_17040_46-0.7.1
  • xen-tools-ioemu >= 3.2.3_17040_46-0.7.1
Builds
ZYPP Patch Nr: 8791
SUSE Linux Enterprise Server 10 SP4 LTSS for AMD64 and Intel EM64T
  • xen >= 3.2.3_17040_46-0.7.1
  • xen-devel >= 3.2.3_17040_46-0.7.1
  • xen-doc-html >= 3.2.3_17040_46-0.7.1
  • xen-doc-pdf >= 3.2.3_17040_46-0.7.1
  • xen-doc-ps >= 3.2.3_17040_46-0.7.1
  • xen-kmp-debug >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-kmp-default >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-kmp-kdump >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-kmp-smp >= 3.2.3_17040_46_2.6.16.60_0.103.13-0.7.1
  • xen-libs >= 3.2.3_17040_46-0.7.1
  • xen-libs-32bit >= 3.2.3_17040_46-0.7.1
  • xen-tools >= 3.2.3_17040_46-0.7.1
  • xen-tools-domU >= 3.2.3_17040_46-0.7.1
  • xen-tools-ioemu >= 3.2.3_17040_46-0.7.1
Builds
ZYPP Patch Nr: 8791
SLE 11 SP2 DEBUGINFO
  • libvirt-debuginfo >= 0.9.6-0.23.1
  • libvirt-debugsource >= 0.9.6-0.23.1
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
sled11-sp2.x86
sle11-sp2-sdk.x86
sle11-sp2-sdk.x86-64
SAT Patch Nr: 7015
SUSE Linux Enterprise Software Development Kit 11 SP2
  • libvirt-devel >= 0.9.6-0.23.1
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
sled11-sp2.x86
sle11-sp2-sdk.x86
sle11-sp2-sdk.x86-64
SAT Patch Nr: 7015
SUSE Linux Enterprise Software Development Kit 11 SP2
  • libvirt-devel >= 0.9.6-0.23.1
  • libvirt-devel-32bit >= 0.9.6-0.23.1
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
sled11-sp2.x86
sle11-sp2-sdk.x86
sle11-sp2-sdk.x86-64
SAT Patch Nr: 7015
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • libvirt >= 0.9.6-0.23.1
  • libvirt-client >= 0.9.6-0.23.1
  • libvirt-doc >= 0.9.6-0.23.1
  • libvirt-python >= 0.9.6-0.23.1
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
sled11-sp2.x86
sle11-sp2-sdk.x86
sle11-sp2-sdk.x86-64
SAT Patch Nr: 7015
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • libvirt >= 0.9.6-0.23.1
  • libvirt-client >= 0.9.6-0.23.1
  • libvirt-client-32bit >= 0.9.6-0.23.1
  • libvirt-doc >= 0.9.6-0.23.1
  • libvirt-python >= 0.9.6-0.23.1
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
sled11-sp2.x86
sle11-sp2-sdk.x86
sle11-sp2-sdk.x86-64
SAT Patch Nr: 7015
SUSE Linux Enterprise Server 10 SP3 DEBUGINFO
  • xen-debuginfo >= 3.2.3_17040_28-0.6.21.3.i586
Builds
ZYPP Patch Nr: 8808
SUSE Linux Enterprise Server 10 SP3 DEBUGINFO
  • xen-debuginfo >= 3.2.3_17040_28-0.6.21.3.x86_64
Builds
ZYPP Patch Nr: 8808
SUSE Linux Enterprise Server 10 SP3 LTSS for x86
  • xen >= 3.2.3_17040_28-0.6.21.3.i586
  • xen-devel >= 3.2.3_17040_28-0.6.21.3.i586
  • xen-doc-html >= 3.2.3_17040_28-0.6.21.3.i586
  • xen-doc-pdf >= 3.2.3_17040_28-0.6.21.3.i586
  • xen-doc-ps >= 3.2.3_17040_28-0.6.21.3.i586
  • xen-kmp-bigsmp >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.i586
  • xen-kmp-debug >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.i586
  • xen-kmp-default >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.i586
  • xen-kmp-kdump >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.i586
  • xen-kmp-kdumppae >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.i586
  • xen-kmp-smp >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.i586
  • xen-kmp-vmi >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.i586
  • xen-kmp-vmipae >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.i586
  • xen-libs >= 3.2.3_17040_28-0.6.21.3.i586
  • xen-tools >= 3.2.3_17040_28-0.6.21.3.i586
  • xen-tools-domU >= 3.2.3_17040_28-0.6.21.3.i586
  • xen-tools-ioemu >= 3.2.3_17040_28-0.6.21.3.i586
Builds
ZYPP Patch Nr: 8808
SUSE Linux Enterprise Server 10 SP3 LTSS for AMD64 and Intel EM64T
  • xen >= 3.2.3_17040_28-0.6.21.3.x86_64
  • xen-devel >= 3.2.3_17040_28-0.6.21.3.x86_64
  • xen-doc-html >= 3.2.3_17040_28-0.6.21.3.x86_64
  • xen-doc-pdf >= 3.2.3_17040_28-0.6.21.3.x86_64
  • xen-doc-ps >= 3.2.3_17040_28-0.6.21.3.x86_64
  • xen-kmp-debug >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.x86_64
  • xen-kmp-default >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.x86_64
  • xen-kmp-kdump >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.x86_64
  • xen-kmp-smp >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3.x86_64
  • xen-libs >= 3.2.3_17040_28-0.6.21.3.x86_64
  • xen-libs-32bit >= 3.2.3_17040_28-0.6.21.3.x86_64
  • xen-tools >= 3.2.3_17040_28-0.6.21.3.x86_64
  • xen-tools-domU >= 3.2.3_17040_28-0.6.21.3.x86_64
  • xen-tools-ioemu >= 3.2.3_17040_28-0.6.21.3.x86_64
Builds
ZYPP Patch Nr: 8808
SLE 11 SP2 DEBUGINFO
  • xen-debuginfo >= 4.1.3_04-0.5.1
  • xen-debugsource >= 4.1.3_04-0.5.1
sled11-sp2.x86
sles11-sp2-vmware.x86
sle11-sp2-sdk.x86
sles11-sp2.x86
sle11-sp2-sdk.x86-64
sles11-sp2.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7018
SUSE Linux Enterprise Software Development Kit 11 SP2
  • xen-devel >= 4.1.3_04-0.5.1
sled11-sp2.x86
sles11-sp2-vmware.x86
sle11-sp2-sdk.x86
sles11-sp2.x86
sle11-sp2-sdk.x86-64
sles11-sp2.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7018
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • xen-kmp-default >= 4.1.3_04_3.0.42_0.7-0.5.1
  • xen-kmp-pae >= 4.1.3_04_3.0.42_0.7-0.5.1
  • xen-kmp-trace >= 4.1.3_04_3.0.42_0.7-0.5.1
  • xen-libs >= 4.1.3_04-0.5.1
  • xen-tools-domU >= 4.1.3_04-0.5.1
sled11-sp2.x86
sles11-sp2-vmware.x86
sle11-sp2-sdk.x86
sles11-sp2.x86
sle11-sp2-sdk.x86-64
sles11-sp2.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7018
SUSE Linux Enterprise Server 11 SP2 for VMware
  • xen-kmp-trace >= 4.1.3_04_3.0.42_0.7-0.5.1
sled11-sp2.x86
sles11-sp2-vmware.x86
sle11-sp2-sdk.x86
sles11-sp2.x86
sle11-sp2-sdk.x86-64
sles11-sp2.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7018
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • xen >= 4.1.3_04-0.5.1
  • xen-doc-html >= 4.1.3_04-0.5.1
  • xen-doc-pdf >= 4.1.3_04-0.5.1
  • xen-kmp-default >= 4.1.3_04_3.0.42_0.7-0.5.1
  • xen-kmp-trace >= 4.1.3_04_3.0.42_0.7-0.5.1
  • xen-libs >= 4.1.3_04-0.5.1
  • xen-libs-32bit >= 4.1.3_04-0.5.1
  • xen-tools >= 4.1.3_04-0.5.1
  • xen-tools-domU >= 4.1.3_04-0.5.1
sled11-sp2.x86
sles11-sp2-vmware.x86
sle11-sp2-sdk.x86
sles11-sp2.x86
sle11-sp2-sdk.x86-64
sles11-sp2.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7018
SLE 11 SP1 DEBUGINFO
  • xen-debuginfo >= 4.0.3_21548_16-0.5.1
  • xen-debugsource >= 4.0.3_21548_16-0.5.1
Builds
SAT Patch Nr: 8963
SUSE Linux Enterprise Server 11 SP1 LTSS
  • xen >= 4.0.3_21548_16-0.5.1
  • xen-doc-html >= 4.0.3_21548_16-0.5.1
  • xen-doc-pdf >= 4.0.3_21548_16-0.5.1
  • xen-kmp-default >= 4.0.3_21548_16_2.6.32.59_0.9-0.5.1
  • xen-kmp-pae >= 4.0.3_21548_16_2.6.32.59_0.9-0.5.1
  • xen-kmp-trace >= 4.0.3_21548_16_2.6.32.59_0.9-0.5.1
  • xen-libs >= 4.0.3_21548_16-0.5.1
  • xen-tools >= 4.0.3_21548_16-0.5.1
  • xen-tools-domU >= 4.0.3_21548_16-0.5.1
Builds
SAT Patch Nr: 8963
SUSE Linux Enterprise Server 11 SP1 LTSS
  • xen >= 4.0.3_21548_16-0.5.1
  • xen-doc-html >= 4.0.3_21548_16-0.5.1
  • xen-doc-pdf >= 4.0.3_21548_16-0.5.1
  • xen-kmp-default >= 4.0.3_21548_16_2.6.32.59_0.9-0.5.1
  • xen-kmp-trace >= 4.0.3_21548_16_2.6.32.59_0.9-0.5.1
  • xen-libs >= 4.0.3_21548_16-0.5.1
  • xen-tools >= 4.0.3_21548_16-0.5.1
  • xen-tools-domU >= 4.0.3_21548_16-0.5.1
Builds
SAT Patch Nr: 8963
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • vm-install >= 0.5.14-0.5.7
sled11-sp2.x86
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
SAT Patch Nr: 7081

List of products where fixes are in QA

© 2014 Novell