|
289321
|
- |
|
xen
|
xen
|
The guest_physmap_mark_populate_on_demand function in Xen 4.2 and earlier does not properly unlock the subject GFNs when checking if they are in use, which allows local guest HVM administrators to ca…
|
NVD-CWE-Other
|
CVE-2012-5514
|
2024-11-21 10:44 |
2012-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289322
|
- |
|
xen
|
xen
|
The XENMEM_exchange handler in Xen 4.2 and earlier does not properly check the memory address, which allows local PV guest OS administrators to cause a denial of service (crash) or possibly gain priv…
|
CWE-20
Improper Input Validation
|
CVE-2012-5513
|
2024-11-21 10:44 |
2012-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289323
|
- |
|
citrix
|
xenserver
|
Array index error in the HVMOP_set_mem_access handler in Xen 4.1 allows local HVM guest OS administrators to cause a denial of service (crash) or obtain sensitive information via unspecified vectors.
|
CWE-16
Configuration
|
CVE-2012-5512
|
2024-11-21 10:44 |
2012-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289324
|
- |
|
xen
|
xen
|
Stack-based buffer overflow in the dirty video RAM tracking functionality in Xen 3.4 through 4.1 allows local HVM guest OS administrators to cause a denial of service (crash) via a large bitmap image.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-5511
|
2024-11-21 10:44 |
2012-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289325
|
- |
|
xen
|
xen
|
Xen 4.x, when downgrading the grant table version, does not properly remove the status page from the tracking list when freeing the page, which allows local guest OS administrators to cause a denial …
|
NVD-CWE-Other
|
CVE-2012-5510
|
2024-11-21 10:44 |
2012-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289326
|
- |
|
canonical libav google opensuse
|
ubuntu_linux libav chrome opensuse
|
Google Chrome before 23.0.1271.97, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.5, do not properly perform AAC decoding, which allows remote attackers to cause a denial of service (stack memory …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-5144
|
2024-11-21 10:44 |
2012-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289327
|
- |
|
opensuse google
|
opensuse chrome
|
Integer overflow in Google Chrome before 23.0.1271.97 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to PPAPI image buffers.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2012-5143
|
2024-11-21 10:44 |
2012-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289328
|
- |
|
google opensuse
|
chrome opensuse
|
Google Chrome before 23.0.1271.97 does not properly handle history navigation, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified…
|
CWE-94
Code Injection
|
CVE-2012-5142
|
2024-11-21 10:44 |
2012-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289329
|
- |
|
opensuse google
|
opensuse chrome
|
Google Chrome before 23.0.1271.97 does not properly restrict instantiation of the Chromoting client plug-in, which has unspecified impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2012-5141
|
2024-11-21 10:44 |
2012-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289330
|
- |
|
google opensuse
|
chrome opensuse
|
Use-after-free vulnerability in Google Chrome before 23.0.1271.97 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the URL loader.
|
CWE-416
Use After Free
|
CVE-2012-5140
|
2024-11-21 10:44 |
2012-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|