Upstream information
Description
The PV domain builder in Xen 4.2 and earlier does not validate the size of the kernel or ramdisk (1) before or (2) after decompression, which allows local guest administrators to cause a denial of service (domain 0 memory consumption) via a crafted (a) kernel or (b) ramdisk.NVD CVSS v2 Base Score: 2.1 (AV:L/AC:L/Au:N/C:N/I:N/A:P)
Novell/SUSE information
Novell Bugzilla entries: 779212, 786516, 786518, 786519, 786520, 787163 SUSE Security Advisories:- SUSE-SU-2012:1486-1, published Fri, 16 Nov 2012 00:09:20 +0100 (CET)
- SUSE-SU-2012:1487-1, published Fri, 16 Nov 2012 17:08:43 +0100 (CET)
- SUSE-SU-2012:1503-1, published Mon, 19 Nov 2012 21:08:39 +0100 (CET)
- openSUSE-SU-2012:1572-1, published Mon, 26 Nov 2012 15:08:36 +0100 (CET)
- openSUSE-SU-2012:1573-1, published Mon, 26 Nov 2012 15:13:15 +0100 (CET)
List of released packages
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| SLE 11 SP2 DEBUGINFO |
| sles11-sp2.x86-64 sles11-sp2.x86 sled11-sp2.x86-64 sled11-sp2.x86 sle11-sp2-sdk.x86 sle11-sp2-sdk.x86-64 SAT Patch Nr: 7015 |
| SUSE Linux Enterprise Software Development Kit 11 SP2 |
| sles11-sp2.x86-64 sles11-sp2.x86 sled11-sp2.x86-64 sled11-sp2.x86 sle11-sp2-sdk.x86 sle11-sp2-sdk.x86-64 SAT Patch Nr: 7015 |
| SUSE Linux Enterprise Software Development Kit 11 SP2 |
| sles11-sp2.x86-64 sles11-sp2.x86 sled11-sp2.x86-64 sled11-sp2.x86 sle11-sp2-sdk.x86 sle11-sp2-sdk.x86-64 SAT Patch Nr: 7015 |
| SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Server 11 SP2 |
| sles11-sp2.x86-64 sles11-sp2.x86 sled11-sp2.x86-64 sled11-sp2.x86 sle11-sp2-sdk.x86 sle11-sp2-sdk.x86-64 SAT Patch Nr: 7015 |
| SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Server 11 SP2 |
| sles11-sp2.x86-64 sles11-sp2.x86 sled11-sp2.x86-64 sled11-sp2.x86 sle11-sp2-sdk.x86 sle11-sp2-sdk.x86-64 SAT Patch Nr: 7015 |
| SLE 11 SP2 DEBUGINFO |
| sled11-sp2.x86 sles11-sp2-vmware.x86 sle11-sp2-sdk.x86 sles11-sp2.x86 sle11-sp2-sdk.x86-64 sles11-sp2.x86-64 sles11-sp2-vmware.x86-64 sled11-sp2.x86-64 SAT Patch Nr: 7018 |
| SUSE Linux Enterprise Software Development Kit 11 SP2 |
| sled11-sp2.x86 sles11-sp2-vmware.x86 sle11-sp2-sdk.x86 sles11-sp2.x86 sle11-sp2-sdk.x86-64 sles11-sp2.x86-64 sles11-sp2-vmware.x86-64 sled11-sp2.x86-64 SAT Patch Nr: 7018 |
| SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Server 11 SP2 |
| sled11-sp2.x86 sles11-sp2-vmware.x86 sle11-sp2-sdk.x86 sles11-sp2.x86 sle11-sp2-sdk.x86-64 sles11-sp2.x86-64 sles11-sp2-vmware.x86-64 sled11-sp2.x86-64 SAT Patch Nr: 7018 |
| SUSE Linux Enterprise Server 11 SP2 for VMware |
| sled11-sp2.x86 sles11-sp2-vmware.x86 sle11-sp2-sdk.x86 sles11-sp2.x86 sle11-sp2-sdk.x86-64 sles11-sp2.x86-64 sles11-sp2-vmware.x86-64 sled11-sp2.x86-64 SAT Patch Nr: 7018 |
| SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Server 11 SP2 |
| sled11-sp2.x86 sles11-sp2-vmware.x86 sle11-sp2-sdk.x86 sles11-sp2.x86 sle11-sp2-sdk.x86-64 sles11-sp2.x86-64 sles11-sp2-vmware.x86-64 sled11-sp2.x86-64 SAT Patch Nr: 7018 |
| SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Server 11 SP2 |
| sled11-sp2.x86 sles11-sp2.x86-64 sles11-sp2.x86 sled11-sp2.x86-64 SAT Patch Nr: 7081 |
