Upstream information
Description
Xen 4.x, when downgrading the grant table version, does not properly remove the status page from the tracking list when freeing the page, which allows local guest OS administrators to cause a denial of service (hypervisor crash) via unspecified vectors.NVD CVSS v2 Base Score: 4.7 (AV:L/AC:M/Au:N/C:N/I:N/A:C)
Novell/SUSE information
Novell Bugzilla entry: 789945 SUSE Security Advisories:- SUSE-SU-2012:1615-1, published Thu, 6 Dec 2012 17:08:57 +0100 (CET)
- openSUSE-SU-2012:1685-1, published Sun, 23 Dec 2012 20:08:36 +0100 (CET)
- openSUSE-SU-2012:1687-1, published Sun, 23 Dec 2012 20:16:24 +0100 (CET)
- openSUSE-SU-2013:0133-1, published Wed, 23 Jan 2013 14:05:00 +0100 (CET)
- openSUSE-SU-2013:0636-1, published Mon, 8 Apr 2013 12:04:30 +0200 (CEST)
- openSUSE-SU-2013:0637-1, published Mon, 8 Apr 2013 12:07:10 +0200 (CEST)
List of released packages
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| SLE 11 SP2 DEBUGINFO |
| Builds SAT Patch Nr: 7492 |
| SUSE Linux Enterprise Software Development Kit 11 SP2 |
| Builds SAT Patch Nr: 7492 |
| SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Server 11 SP2 |
| Builds SAT Patch Nr: 7492 |
| SUSE Linux Enterprise Server 11 SP2 for VMware |
| Builds SAT Patch Nr: 7492 |
| SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Server 11 SP2 |
| Builds SAT Patch Nr: 7492 |
| SLE 11 SP2 DEBUGINFO |
| sles11-sp2.x86-64 sle11-sp2-sdk.x86-64 sles11-sp2-vmware.x86-64 sled11-sp2.x86-64 SAT Patch Nr: 7133 |
| SUSE Linux Enterprise Software Development Kit 11 SP2 |
| sles11-sp2.x86-64 sle11-sp2-sdk.x86-64 sles11-sp2-vmware.x86-64 sled11-sp2.x86-64 SAT Patch Nr: 7133 |
| SUSE Linux Enterprise Server 11 SP2 for VMware |
| sles11-sp2.x86-64 sle11-sp2-sdk.x86-64 sles11-sp2-vmware.x86-64 sled11-sp2.x86-64 SAT Patch Nr: 7133 |
| SUSE Linux Enterprise Desktop 11 SP2 SUSE Linux Enterprise Server 11 SP2 |
| sles11-sp2.x86-64 sle11-sp2-sdk.x86-64 sles11-sp2-vmware.x86-64 sled11-sp2.x86-64 SAT Patch Nr: 7133 |
