The GNTTABOP_swap_grant_ref sub-operation in the grant table hypercall in Xen 4.2 and Citrix XenServer 6.0.2 allows local guest kernels or administrators to cause a denial of service (host crash) and possibly gain privileges via a crafted grant reference that triggers a write to an arbitrary hypervisor memory location.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2012-11-23 12:55
Updated : 2013-01-31 20:49
NVD link : CVE-2012-3516
Mitre link : CVE-2012-3516
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
citrix
- xenserver
xen
- xen