CVE-2012-5634
published 2013-02-14CVE-2012-5634: Xen 4.2.x, 4.1.x, and 4.0, when using Intel VT-d for PCI passthrough, does not properly configure VT-d when supporting a device that is behind a legacy PCI…
PriorityP419medium6.1CVSS 2.0
AVAACLAuNCNINAC
EPSS
0.72%
49.6th percentile
Xen 4.2.x, 4.1.x, and 4.0, when using Intel VT-d for PCI passthrough, does not properly configure VT-d when supporting a device that is behind a legacy PCI Bridge, which allows local guests to cause a denial of service to other guests by injecting an interrupt.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | xen | < xen 4.1.3-8 (bookworm) | xen 4.1.3-8 (bookworm) |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | >= 0 < 4.1.3-8 | 4.1.3-8 |
| xen | xen | >= 0 < 4.1.3-8 | 4.1.3-8 |
| xen | xen | >= 0 < 4.1.3-8 | 4.1.3-8 |
| xen | xen | >= 0 < 4.1.3-8 | 4.1.3-8 |
CVSS provenance
nvdv2.06.1MEDIUMAV:A/AC:L/Au:N/C:N/I:N/A:C
osv6.1MEDIUM
vendor_debian6.1LOW
vendor_redhat6.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: xen: VT-d interrupt remapping source validation flaw
vendor_redhat·2013-01-08·CVSS 6.1
CVE-2012-5634 [MEDIUM] kernel: xen: VT-d interrupt remapping source validation flaw
kernel: xen: VT-d interrupt remapping source validation flaw
Xen 4.2.x, 4.1.x, and 4.0, when using Intel VT-d for PCI passthrough, does not properly configure VT-d when supporting a device that is behind a legacy PCI Bridge, which allows local guests to cause a denial of service to other guests by injecting an interrupt.
Statement: Not vulnerable.
This issue did not affect the versions of the kernel-xen package as shipped with Red Hat Enterprise Linux 5.
This issue did not affect Red Hat Enterprise Linux 6 and Red Hat Enterprise MRG as we did not have support for Xen hypervisor.
Package: kernel-xen (Red Hat Enterprise Linux 5) - Not affected
Debian
CVE-2012-5634: xen - Xen 4.2.x, 4.1.x, and 4.0, when using Intel VT-d for PCI passthrough, does not p...
vendor_debian·2012·CVSS 6.1
CVE-2012-5634 [MEDIUM] CVE-2012-5634: xen - Xen 4.2.x, 4.1.x, and 4.0, when using Intel VT-d for PCI passthrough, does not p...
Xen 4.2.x, 4.1.x, and 4.0, when using Intel VT-d for PCI passthrough, does not properly configure VT-d when supporting a device that is behind a legacy PCI Bridge, which allows local guests to cause a denial of service to other guests by injecting an interrupt.
Scope: local
bookworm: resolved (fixed in 4.1.3-8)
bullseye: resolved (fixed in 4.1.3-8)
forky: resolved (fixed in 4.1.3-8)
sid: resolved (fixed in 4.1.3-8)
trixie: resolved (fixed in 4.1.3-8)
GHSA
GHSA-wmqh-ggr8-mwm7: Xen 4
ghsa_unreviewed·2022-05-17
CVE-2012-5634 [MEDIUM] GHSA-wmqh-ggr8-mwm7: Xen 4
Xen 4.2.x, 4.1.x, and 4.0, when using Intel VT-d for PCI passthrough, does not properly configure VT-d when supporting a device that is behind a legacy PCI Bridge, which allows local guests to cause a denial of service to other guests by injecting an interrupt.
OSV
CVE-2012-5634: Xen 4
osv·2013-02-14·CVSS 6.1
CVE-2012-5634 [MEDIUM] CVE-2012-5634: Xen 4
Xen 4.2.x, 4.1.x, and 4.0, when using Intel VT-d for PCI passthrough, does not properly configure VT-d when supporting a device that is behind a legacy PCI Bridge, which allows local guests to cause a denial of service to other guests by injecting an interrupt.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-5634 kernel: xen: VT-d interrupt remapping source validation flaw [fedora-all]
bugzilla·2013-01-09·CVSS 6.1
CVE-2012-5634 [MEDIUM] CVE-2012-5634 kernel: xen: VT-d interrupt remapping source validation flaw [fedora-all]
CVE-2012-5634 kernel: xen: VT-d interrupt remapping source validation flaw [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
Please note: this
Bugzilla
CVE-2012-5634 kernel: xen: VT-d interrupt remapping source validation flaw
bugzilla·2012-12-13·CVSS 6.1
CVE-2012-5634 [MEDIUM] CVE-2012-5634 kernel: xen: VT-d interrupt remapping source validation flaw
CVE-2012-5634 kernel: xen: VT-d interrupt remapping source validation flaw
When passing a device which is behind a legacy PCI Bridge through to
a guest Xen incorrectly configures the VT-d hardware. This could allow
incorrect interrupts to be injected to other guests which also have
passthrough devices.
In a typical Xen system many devices are owned by domain 0 or driver
domains, leaving them vulnerable to such an attack. Such a DoS is
likely to have an impact on other guests running in the system.
On systems using Intel VT-d for PCI passthrough a malicious domain,
given access to a device which is behind a legacy PCI bridge, can
mount a denial of service attack affecting the whole system.
Acknowledgements:
Red Hat would like to thank the Xen project for reporting this issue.
Discuss
http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00021.htmlhttp://lists.opensuse.org/opensuse-updates/2013-04/msg00051.htmlhttp://lists.opensuse.org/opensuse-updates/2013-04/msg00052.htmlhttp://lists.opensuse.org/opensuse-updates/2013-06/msg00049.htmlhttp://secunia.com/advisories/55082http://security.gentoo.org/glsa/glsa-201309-24.xmlhttp://www.debian.org/security/2013/dsa-2636http://www.openwall.com/lists/oss-security/2013/01/09/5http://lists.opensuse.org/opensuse-security-announce/2014-03/msg00021.htmlhttp://lists.opensuse.org/opensuse-updates/2013-04/msg00051.htmlhttp://lists.opensuse.org/opensuse-updates/2013-04/msg00052.htmlhttp://lists.opensuse.org/opensuse-updates/2013-06/msg00049.htmlhttp://secunia.com/advisories/55082http://security.gentoo.org/glsa/glsa-201309-24.xmlhttp://www.debian.org/security/2013/dsa-2636http://www.openwall.com/lists/oss-security/2013/01/09/5
2013-02-14
Published