The GNTTABOP_swap_grant_ref sub-operation in the grant table hypercall in Xen 4.2 and Citrix XenServer 6.0.2 allows local guest kernels or administrators to cause a denial of service (host crash) and possibly gain privileges via a crafted grant reference that triggers a write to an arbitrary hypervisor memory location.
Advisories
Source ID Title
EUVD EUVD EUVD-2012-3471 The GNTTABOP_swap_grant_ref sub-operation in the grant table hypercall in Xen 4.2 and Citrix XenServer 6.0.2 allows local guest kernels or administrators to cause a denial of service (host crash) and possibly gain privileges via a crafted grant reference that triggers a write to an arbitrary hypervisor memory location.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-06T20:05:12.797Z

Reserved: 2012-06-14T00:00:00

Link: CVE-2012-3516

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2012-11-23T20:55:03.650

Modified: 2025-04-11T00:51:21.963

Link: CVE-2012-3516

cve-icon Redhat

Severity : Important

Publid Date: 2012-09-05T00:00:00Z

Links: CVE-2012-3516 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses