VYPR
Unrated severityNVD Advisory· Published Jun 12, 2012· Updated Jun 16, 2026

CVE-2012-0217

CVE-2012-0217

Description

The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Oracle Solaris 11 and earlier; illumos before r13724; Joyent SmartOS before 20120614T184600Z; FreeBSD before 9.0-RELEASE-p3; NetBSD 6.0 Beta and earlier; Microsoft Windows Server 2008 R2 and R2 SP1 and Windows 7 Gold and SP1; and possibly other operating systems, when running on an Intel processor, incorrectly uses the sysret path in cases where a certain address is not a canonical address, which allows local users to gain privileges via a crafted application. NOTE: because this issue is due to incorrect use of the Intel specification, it should have been split into separate identifiers; however, there was some value in preserving the original mapping of the multi-codebase coordinated-disclosure effort to a single identifier.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

30
  • Xen/Xenllm-fuzzy9 versions
    <=4.1.2+ 8 more
    • (no CPE)range: <=4.1.2
    • cpe:2.3:o:xen:xen:*:*:*:*:*:*:*:*range: <=4.1.2
    • cpe:2.3:o:xen:xen:4.0.0:*:*:*:*:*:*:*
    • cpe:2.3:o:xen:xen:4.0.1:*:*:*:*:*:*:*
    • cpe:2.3:o:xen:xen:4.0.2:*:*:*:*:*:*:*
    • cpe:2.3:o:xen:xen:4.0.3:*:*:*:*:*:*:*
    • cpe:2.3:o:xen:xen:4.0.4:*:*:*:*:*:*:*
    • cpe:2.3:o:xen:xen:4.1.0:*:*:*:*:*:*:*
    • cpe:2.3:o:xen:xen:4.1.1:*:*:*:*:*:*:*
  • Citrix Systems/Xenserverllm-fuzzy3 versions
    <=6.0.2+ 2 more
    • (no CPE)range: <=6.0.2
    • cpe:2.3:a:citrix:xenserver:*:*:*:*:*:*:*:*range: <=6.0.2
    • cpe:2.3:a:citrix:xenserver:6.0:*:*:*:*:*:*:*
  • Range: <=11
  • Illumos/Illumosllm-fuzzy2 versions
    <r13724+ 1 more
    • (no CPE)range: <r13724
    • cpe:2.3:o:illumos:illumos:*:*:*:*:*:*:*:*range: <=r13723
  • Joyent/Smartosllm-fuzzy2 versions
    <20120614T184600Z+ 1 more
    • (no CPE)range: <20120614T184600Z
    • cpe:2.3:o:joyent:smartos:*:*:*:*:*:*:*:*range: <=20120614
  • FreeBSD/FreeBSDllm-fuzzy2 versions
    <9.0-RELEASE-p3+ 1 more
    • (no CPE)range: <9.0-RELEASE-p3
    • cpe:2.3:o:freebsd:freebsd:*:*:*:*:*:*:*:*range: <=9.0
  • NetBSD/NetBSDllm-fuzzy2 versions
    <=6.0 Beta+ 1 more
    • (no CPE)range: <=6.0 Beta
    • cpe:2.3:o:netbsd:netbsd:*:beta:*:*:*:*:*:*range: <=6.0
  • Microsoft/Windows Server 2008llm-fuzzy2 versions
    <=R2 SP1+ 1 more
    • (no CPE)range: <=R2 SP1
    • cpe:2.3:o:microsoft:windows_server_2008:r2:*:x64:*:*:*:*:*
  • Microsoft/Windows 7llm-fuzzy3 versions
    <=SP1+ 2 more
    • (no CPE)range: <=SP1
    • cpe:2.3:o:microsoft:windows_7:*:*:x64:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_7:*:sp1:x64:*:*:*:*:*
  • cpe:2.3:o:microsoft:windows_server_2003:*:sp2:*:*:*:*:*:*
  • cpe:2.3:o:microsoft:windows_xp:*:sp3:*:*:*:*:*:*
  • cpe:2.3:o:sun:sunos:*:*:*:*:*:*:*:*
    Range: <=5.11

Patches

Vulnerability mechanics

References

23

News mentions

0

No linked articles in our index yet.