Xen 3.4 through 4.2, and possibly earlier versions, does not properly synchronize the p2m and m2p tables when the set_p2m_entry function fails, which allows local HVM guest OS administrators to cause a denial of service (memory consumption and assertion failure), aka "Memory mapping failure DoS vulnerability."
2012-11-21T23:55:02.210
2025-04-11T00:51:21.963
Deferred
CVSSv2: 2.1 (LOW)
AV:L/AC:L/Au:N/C:N/I:N/A:P
3.9
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | xen | xen | 3.4.0 | Yes |
| Operating System | xen | xen | 3.4.1 | Yes |
| Operating System | xen | xen | 3.4.2 | Yes |
| Operating System | xen | xen | 3.4.3 | Yes |
| Operating System | xen | xen | 3.4.4 | Yes |
| Operating System | xen | xen | 4.0.0 | Yes |
| Operating System | xen | xen | 4.0.1 | Yes |
| Operating System | xen | xen | 4.0.2 | Yes |
| Operating System | xen | xen | 4.0.3 | Yes |
| Operating System | xen | xen | 4.0.4 | Yes |
| Operating System | xen | xen | 4.1.0 | Yes |
| Operating System | xen | xen | 4.1.1 | Yes |
| Operating System | xen | xen | 4.1.2 | Yes |
| Operating System | xen | xen | 4.1.3 | Yes |
| Operating System | xen | xen | 4.2.0 | Yes |