Novell Home

CVE-2012-4544

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2012-4544 at MITRE

Description

The PV domain builder in Xen 4.2 and earlier does not validate the size of the kernel or ramdisk (1) before or (2) after decompression, which allows local guest administrators to cause a denial of service (domain 0 memory consumption) via a crafted (a) kernel or (b) ramdisk.

NVD CVSS v2 Base Score: 2.1 (AV:L/AC:L/Au:N/C:N/I:N/A:P)

Novell/SUSE information

Novell Bugzilla entries: 779212, 786516, 786518, 786519, 786520, 787163

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SLE 11 SP2 DEBUGINFO
  • libvirt-debuginfo >= 0.9.6-0.23.1
  • libvirt-debugsource >= 0.9.6-0.23.1
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
sled11-sp2.x86
sle11-sp2-sdk.x86
sle11-sp2-sdk.x86-64
SAT Patch Nr: 7015
SUSE Linux Enterprise Software Development Kit 11 SP2
  • libvirt-devel >= 0.9.6-0.23.1
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
sled11-sp2.x86
sle11-sp2-sdk.x86
sle11-sp2-sdk.x86-64
SAT Patch Nr: 7015
SUSE Linux Enterprise Software Development Kit 11 SP2
  • libvirt-devel >= 0.9.6-0.23.1
  • libvirt-devel-32bit >= 0.9.6-0.23.1
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
sled11-sp2.x86
sle11-sp2-sdk.x86
sle11-sp2-sdk.x86-64
SAT Patch Nr: 7015
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • libvirt >= 0.9.6-0.23.1
  • libvirt-client >= 0.9.6-0.23.1
  • libvirt-doc >= 0.9.6-0.23.1
  • libvirt-python >= 0.9.6-0.23.1
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
sled11-sp2.x86
sle11-sp2-sdk.x86
sle11-sp2-sdk.x86-64
SAT Patch Nr: 7015
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • libvirt >= 0.9.6-0.23.1
  • libvirt-client >= 0.9.6-0.23.1
  • libvirt-client-32bit >= 0.9.6-0.23.1
  • libvirt-doc >= 0.9.6-0.23.1
  • libvirt-python >= 0.9.6-0.23.1
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
sled11-sp2.x86
sle11-sp2-sdk.x86
sle11-sp2-sdk.x86-64
SAT Patch Nr: 7015
SLE 11 SP2 DEBUGINFO
  • xen-debuginfo >= 4.1.3_04-0.5.1
  • xen-debugsource >= 4.1.3_04-0.5.1
sled11-sp2.x86
sles11-sp2-vmware.x86
sle11-sp2-sdk.x86
sles11-sp2.x86
sle11-sp2-sdk.x86-64
sles11-sp2.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7018
SUSE Linux Enterprise Software Development Kit 11 SP2
  • xen-devel >= 4.1.3_04-0.5.1
sled11-sp2.x86
sles11-sp2-vmware.x86
sle11-sp2-sdk.x86
sles11-sp2.x86
sle11-sp2-sdk.x86-64
sles11-sp2.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7018
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • xen-kmp-default >= 4.1.3_04_3.0.42_0.7-0.5.1
  • xen-kmp-pae >= 4.1.3_04_3.0.42_0.7-0.5.1
  • xen-kmp-trace >= 4.1.3_04_3.0.42_0.7-0.5.1
  • xen-libs >= 4.1.3_04-0.5.1
  • xen-tools-domU >= 4.1.3_04-0.5.1
sled11-sp2.x86
sles11-sp2-vmware.x86
sle11-sp2-sdk.x86
sles11-sp2.x86
sle11-sp2-sdk.x86-64
sles11-sp2.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7018
SUSE Linux Enterprise Server 11 SP2 for VMware
  • xen-kmp-trace >= 4.1.3_04_3.0.42_0.7-0.5.1
sled11-sp2.x86
sles11-sp2-vmware.x86
sle11-sp2-sdk.x86
sles11-sp2.x86
sle11-sp2-sdk.x86-64
sles11-sp2.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7018
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • xen >= 4.1.3_04-0.5.1
  • xen-doc-html >= 4.1.3_04-0.5.1
  • xen-doc-pdf >= 4.1.3_04-0.5.1
  • xen-kmp-default >= 4.1.3_04_3.0.42_0.7-0.5.1
  • xen-kmp-trace >= 4.1.3_04_3.0.42_0.7-0.5.1
  • xen-libs >= 4.1.3_04-0.5.1
  • xen-libs-32bit >= 4.1.3_04-0.5.1
  • xen-tools >= 4.1.3_04-0.5.1
  • xen-tools-domU >= 4.1.3_04-0.5.1
sled11-sp2.x86
sles11-sp2-vmware.x86
sle11-sp2-sdk.x86
sles11-sp2.x86
sle11-sp2-sdk.x86-64
sles11-sp2.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7018
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • vm-install >= 0.5.14-0.5.7
sled11-sp2.x86
sles11-sp2.x86-64
sles11-sp2.x86
sled11-sp2.x86-64
SAT Patch Nr: 7081

© 2013 Novell