The graphical console in Xen 4.0, 4.1 and 4.2 allows local OS guest administrators to obtain sensitive host resource information via the qemu monitor. NOTE: this might be a duplicate of CVE-2007-0998.
2012-11-23T20:55:03.743
2025-04-11T00:51:21.963
Deferred
CVSSv2: 4.6 (MEDIUM)
AV:L/AC:L/Au:S/C:C/I:N/A:N
3.1
6.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | xen | xen | 4.0.0 | Yes |
| Operating System | xen | xen | 4.1.0 | Yes |
| Operating System | xen | xen | 4.2.0 | Yes |