CVE-2012-5634

medium
Published 2013-02-14 · Modified 2026-04-29
CVSS v3
CVSS v2
6.1
VIR risk
6.1

Description

Xen 4.2.x, 4.1.x, and 4.0, when using Intel VT-d for PCI passthrough, does not properly configure VT-d when supporting a device that is behind a legacy PCI Bridge, which allows local guests to cause a denial of service to other guests by injecting an interrupt.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2012-5634

OS impact

OSVersionStatusFixed in
debian debianbookwormfixed4.1.3-8
debian debianbullseyefixed4.1.3-8
debian debianforkyfixed4.1.3-8
debian debiansidfixed4.1.3-8
debian debiantrixiefixed4.1.3-8

References

CWEs

CWE-16

Verify integrity in audit chain (admin only). AS-IS.