CVE-2012-6333: Medium severity xen xapi vulnerability
Published Dec 13, 2012
·Updated
Multiple HVM control operations in Xen 3.4 through 4.2 allow local HVM guest OS administrators to cause a denial of service (physical CPU consumption) via a large input.
Affected Software
12 affected components
XEN Xen=3.4.0
XEN Xen=3.4.1
XEN Xen=3.4.2
XEN Xen=3.4.3
XEN Xen=3.4.4
XEN Xen=4.0.0
XEN Xen=4.0.1
XEN Xen=4.0.2
XEN Xen=4.0.3
XEN Xen=4.0.4
XEN Xen=4.1.0
XEN Xen=4.2.0
Event History
Dec 13, 2012
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-6333?
CVE-2012-6333 is classified as a denial of service vulnerability affecting multiple versions of Xen.
2
How do I fix CVE-2012-6333?
To mitigate CVE-2012-6333, it is recommended to update to a version of Xen that has addressed this vulnerability.
3
Which software versions are affected by CVE-2012-6333?
CVE-2012-6333 affects Xen versions 3.4.0 through 4.2.0.
4
Can CVE-2012-6333 be exploited remotely?
CVE-2012-6333 requires local access to the HVM guest OS to exploit the vulnerability.
5
What are the consequences of exploiting CVE-2012-6333?
Exploitation of CVE-2012-6333 can lead to excessive physical CPU consumption, resulting in a denial of service.