Novell Home

CVE-2012-5513

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2012-5513 at MITRE

Description

The XENMEM_exchange handler in Xen 4.2 and earlier does not properly check the memory address, which allows local PV guest OS administrators to cause a denial of service (crash) or possibly gain privileges via unspecified vectors that overwrite memory in the hypervisor reserved range.

NVD CVSS v2 Base Score: 6.9 (AV:L/AC:M/Au:N/C:C/I:C/A:C)

Novell/SUSE information

Novell Bugzilla entry: 789951

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise Desktop 10 SP4 for x86
  • xen >= 3.2.3_17040_44-0.7.1
  • xen-devel >= 3.2.3_17040_44-0.7.1
  • xen-doc-html >= 3.2.3_17040_44-0.7.1
  • xen-doc-pdf >= 3.2.3_17040_44-0.7.1
  • xen-doc-ps >= 3.2.3_17040_44-0.7.1
  • xen-kmp-bigsmp >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-default >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-smp >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-libs >= 3.2.3_17040_44-0.7.1
  • xen-tools >= 3.2.3_17040_44-0.7.1
  • xen-tools-domU >= 3.2.3_17040_44-0.7.1
  • xen-tools-ioemu >= 3.2.3_17040_44-0.7.1
sles10-sp4.x86-64
sles10-sp4.x86
sles10-sp4-debuginfo.x86
sle10-sp4-sdk.x86
sle10-sp4-sdk.x86-64
sles10-sp4-debuginfo.x86-64
sled10-sp4.x86-64
sled10-sp4.x86
ZYPP Patch Nr: 8379
SUSE Linux Enterprise Desktop 10 SP4 for AMD64 and Intel EM64T
  • xen >= 3.2.3_17040_44-0.7.1
  • xen-devel >= 3.2.3_17040_44-0.7.1
  • xen-doc-html >= 3.2.3_17040_44-0.7.1
  • xen-doc-pdf >= 3.2.3_17040_44-0.7.1
  • xen-doc-ps >= 3.2.3_17040_44-0.7.1
  • xen-kmp-default >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-smp >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-libs >= 3.2.3_17040_44-0.7.1
  • xen-libs-32bit >= 3.2.3_17040_44-0.7.1
  • xen-tools >= 3.2.3_17040_44-0.7.1
  • xen-tools-domU >= 3.2.3_17040_44-0.7.1
  • xen-tools-ioemu >= 3.2.3_17040_44-0.7.1
sles10-sp4.x86-64
sles10-sp4.x86
sles10-sp4-debuginfo.x86
sle10-sp4-sdk.x86
sle10-sp4-sdk.x86-64
sles10-sp4-debuginfo.x86-64
sled10-sp4.x86-64
sled10-sp4.x86
ZYPP Patch Nr: 8379
SLE SDK 10 SP4 for x86
  • xen >= 3.2.3_17040_44-0.7.1
  • xen-devel >= 3.2.3_17040_44-0.7.1
  • xen-kmp-debug >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-kdump >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-libs >= 3.2.3_17040_44-0.7.1
  • xen-tools >= 3.2.3_17040_44-0.7.1
  • xen-tools-ioemu >= 3.2.3_17040_44-0.7.1
sles10-sp4.x86-64
sles10-sp4.x86
sles10-sp4-debuginfo.x86
sle10-sp4-sdk.x86
sle10-sp4-sdk.x86-64
sles10-sp4-debuginfo.x86-64
sled10-sp4.x86-64
sled10-sp4.x86
ZYPP Patch Nr: 8379
SLE SDK 10 SP4 for X86-64
  • xen >= 3.2.3_17040_44-0.7.1
  • xen-devel >= 3.2.3_17040_44-0.7.1
  • xen-kmp-debug >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-kdump >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-libs >= 3.2.3_17040_44-0.7.1
  • xen-libs-32bit >= 3.2.3_17040_44-0.7.1
  • xen-tools >= 3.2.3_17040_44-0.7.1
  • xen-tools-ioemu >= 3.2.3_17040_44-0.7.1
sles10-sp4.x86-64
sles10-sp4.x86
sles10-sp4-debuginfo.x86
sle10-sp4-sdk.x86
sle10-sp4-sdk.x86-64
sles10-sp4-debuginfo.x86-64
sled10-sp4.x86-64
sled10-sp4.x86
ZYPP Patch Nr: 8379
SUSE Linux Enterprise Server 10 SP4 for x86
  • xen >= 3.2.3_17040_44-0.7.1
  • xen-devel >= 3.2.3_17040_44-0.7.1
  • xen-doc-html >= 3.2.3_17040_44-0.7.1
  • xen-doc-pdf >= 3.2.3_17040_44-0.7.1
  • xen-doc-ps >= 3.2.3_17040_44-0.7.1
  • xen-kmp-bigsmp >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-debug >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-default >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-kdump >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-kdumppae >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-smp >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-vmi >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-vmipae >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-libs >= 3.2.3_17040_44-0.7.1
  • xen-tools >= 3.2.3_17040_44-0.7.1
  • xen-tools-domU >= 3.2.3_17040_44-0.7.1
  • xen-tools-ioemu >= 3.2.3_17040_44-0.7.1
sles10-sp4.x86-64
sles10-sp4.x86
sles10-sp4-debuginfo.x86
sle10-sp4-sdk.x86
sle10-sp4-sdk.x86-64
sles10-sp4-debuginfo.x86-64
sled10-sp4.x86-64
sled10-sp4.x86
ZYPP Patch Nr: 8379
SUSE Linux Enterprise Server 10 SP4 for AMD64 and Intel EM64T
  • xen >= 3.2.3_17040_44-0.7.1
  • xen-devel >= 3.2.3_17040_44-0.7.1
  • xen-doc-html >= 3.2.3_17040_44-0.7.1
  • xen-doc-pdf >= 3.2.3_17040_44-0.7.1
  • xen-doc-ps >= 3.2.3_17040_44-0.7.1
  • xen-kmp-debug >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-default >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-kdump >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-kmp-smp >= 3.2.3_17040_44_2.6.16.60_0.99.13-0.7.1
  • xen-libs >= 3.2.3_17040_44-0.7.1
  • xen-libs-32bit >= 3.2.3_17040_44-0.7.1
  • xen-tools >= 3.2.3_17040_44-0.7.1
  • xen-tools-domU >= 3.2.3_17040_44-0.7.1
  • xen-tools-ioemu >= 3.2.3_17040_44-0.7.1
sles10-sp4.x86-64
sles10-sp4.x86
sles10-sp4-debuginfo.x86
sle10-sp4-sdk.x86
sle10-sp4-sdk.x86-64
sles10-sp4-debuginfo.x86-64
sled10-sp4.x86-64
sled10-sp4.x86
ZYPP Patch Nr: 8379
SUSE Linux Enterprise Software Development Kit 11 SP2
  • xen-devel >= 4.1.4_02-0.5.1
Builds
SAT Patch Nr: 7492
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • xen-kmp-default >= 4.1.4_02_3.0.58_0.6.6-0.5.1
  • xen-kmp-pae >= 4.1.4_02_3.0.58_0.6.6-0.5.1
  • xen-kmp-trace >= 4.1.4_02_3.0.58_0.6.6-0.5.1
  • xen-libs >= 4.1.4_02-0.5.1
  • xen-tools-domU >= 4.1.4_02-0.5.1
Builds
SAT Patch Nr: 7492
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • xen >= 4.1.4_02-0.5.1
  • xen-doc-html >= 4.1.4_02-0.5.1
  • xen-doc-pdf >= 4.1.4_02-0.5.1
  • xen-kmp-default >= 4.1.4_02_3.0.58_0.6.6-0.5.1
  • xen-kmp-trace >= 4.1.4_02_3.0.58_0.6.6-0.5.1
  • xen-libs >= 4.1.4_02-0.5.1
  • xen-libs-32bit >= 4.1.4_02-0.5.1
  • xen-tools >= 4.1.4_02-0.5.1
  • xen-tools-domU >= 4.1.4_02-0.5.1
Builds
SAT Patch Nr: 7492
SUSE Linux Enterprise Server 11 SP2 for VMware
  • xen-kmp-trace >= 4.1.4_02_3.0.58_0.6.6-0.5.1
Builds
SAT Patch Nr: 7492
SUSE Linux Enterprise Server 10 SP3 LTSS for x86
  • xen >= 3.2.3_17040_28-0.6.21.3
  • xen-devel >= 3.2.3_17040_28-0.6.21.3
  • xen-doc-html >= 3.2.3_17040_28-0.6.21.3
  • xen-doc-pdf >= 3.2.3_17040_28-0.6.21.3
  • xen-doc-ps >= 3.2.3_17040_28-0.6.21.3
  • xen-kmp-bigsmp >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-kmp-debug >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-kmp-default >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-kmp-kdump >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-kmp-kdumppae >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-kmp-smp >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-kmp-vmi >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-kmp-vmipae >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-libs >= 3.2.3_17040_28-0.6.21.3
  • xen-tools >= 3.2.3_17040_28-0.6.21.3
  • xen-tools-domU >= 3.2.3_17040_28-0.6.21.3
  • xen-tools-ioemu >= 3.2.3_17040_28-0.6.21.3
Builds
ZYPP Patch Nr: 8808
SUSE Linux Enterprise Server 10 SP3 LTSS for AMD64 and Intel EM64T
  • xen >= 3.2.3_17040_28-0.6.21.3
  • xen-devel >= 3.2.3_17040_28-0.6.21.3
  • xen-doc-html >= 3.2.3_17040_28-0.6.21.3
  • xen-doc-pdf >= 3.2.3_17040_28-0.6.21.3
  • xen-doc-ps >= 3.2.3_17040_28-0.6.21.3
  • xen-kmp-debug >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-kmp-default >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-kmp-kdump >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-kmp-smp >= 3.2.3_17040_28_2.6.16.60_0.113.9-0.6.21.3
  • xen-libs >= 3.2.3_17040_28-0.6.21.3
  • xen-libs-32bit >= 3.2.3_17040_28-0.6.21.3
  • xen-tools >= 3.2.3_17040_28-0.6.21.3
  • xen-tools-domU >= 3.2.3_17040_28-0.6.21.3
  • xen-tools-ioemu >= 3.2.3_17040_28-0.6.21.3
Builds
ZYPP Patch Nr: 8808
SUSE Linux Enterprise Server 11 SP1 LTSS
  • xen >= 4.0.3_21548_16-0.5.1
  • xen-doc-html >= 4.0.3_21548_16-0.5.1
  • xen-doc-pdf >= 4.0.3_21548_16-0.5.1
  • xen-kmp-default >= 4.0.3_21548_16_2.6.32.59_0.9-0.5.1
  • xen-kmp-pae >= 4.0.3_21548_16_2.6.32.59_0.9-0.5.1
  • xen-kmp-trace >= 4.0.3_21548_16_2.6.32.59_0.9-0.5.1
  • xen-libs >= 4.0.3_21548_16-0.5.1
  • xen-tools >= 4.0.3_21548_16-0.5.1
  • xen-tools-domU >= 4.0.3_21548_16-0.5.1
Builds
SAT Patch Nr: 8963
SUSE Linux Enterprise Server 11 SP1 LTSS
  • xen >= 4.0.3_21548_16-0.5.1
  • xen-doc-html >= 4.0.3_21548_16-0.5.1
  • xen-doc-pdf >= 4.0.3_21548_16-0.5.1
  • xen-kmp-default >= 4.0.3_21548_16_2.6.32.59_0.9-0.5.1
  • xen-kmp-trace >= 4.0.3_21548_16_2.6.32.59_0.9-0.5.1
  • xen-libs >= 4.0.3_21548_16-0.5.1
  • xen-tools >= 4.0.3_21548_16-0.5.1
  • xen-tools-domU >= 4.0.3_21548_16-0.5.1
Builds
SAT Patch Nr: 8963
SUSE Linux Enterprise Software Development Kit 11 SP2
  • xen-devel >= 4.1.3_06-0.7.1
sles11-sp2.x86-64
sle11-sp2-sdk.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7133
SUSE Linux Enterprise Desktop 11 SP2
SUSE Linux Enterprise Server 11 SP2
  • xen >= 4.1.3_06-0.7.1
  • xen-doc-html >= 4.1.3_06-0.7.1
  • xen-doc-pdf >= 4.1.3_06-0.7.1
  • xen-kmp-default >= 4.1.3_06_3.0.51_0.7.9-0.7.1
  • xen-kmp-trace >= 4.1.3_06_3.0.51_0.7.9-0.7.1
  • xen-libs >= 4.1.3_06-0.7.1
  • xen-libs-32bit >= 4.1.3_06-0.7.1
  • xen-tools >= 4.1.3_06-0.7.1
  • xen-tools-domU >= 4.1.3_06-0.7.1
sles11-sp2.x86-64
sle11-sp2-sdk.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7133
SUSE Linux Enterprise Server 11 SP2 for VMware
  • xen-kmp-trace >= 4.1.3_06_3.0.51_0.7.9-0.7.1
sles11-sp2.x86-64
sle11-sp2-sdk.x86-64
sles11-sp2-vmware.x86-64
sled11-sp2.x86-64
SAT Patch Nr: 7133

© 2014 Novell