CVE-2012-6033: Medium severity xen xapi vulnerability
The dotmemcontrol function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 does not properly check privileges, which allows local guest OS users to access control stack operations via unspecified vectors. NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-6033?
CVE-2012-6033 is classified as a high-severity vulnerability due to improper privilege checks in the Transcendent Memory implementation.
How do I fix CVE-2012-6033?
To mitigate CVE-2012-6033, upgrade to a patched version of Xen beyond 4.2.0.
Who is affected by CVE-2012-6033?
CVE-2012-6033 affects local guest OS users on Xen versions 4.0.0, 4.1.0, and 4.2.0.
What is the potential impact of CVE-2012-6033?
The vulnerability may allow unauthorized access to control stack operations, compromising system security.
When was CVE-2012-6033 disclosed?
CVE-2012-6033 was disclosed in September 2012.