CVE-2012-4411: Xen

Medium severity, CVSS 4.6. EPSS: 0.4% chance of exploitation in the next 30 days.

The graphical console in Xen 4.0, 4.1 and 4.2 allows local OS guest administrators to obtain sensitive host resource information via the qemu monitor. NOTE: this might be a duplicate of CVE-2007-0998.

Affected products

  • Xen Xen: version 4.0.0 only; version 4.1.0 only; version 4.2.0 only

Published 2012-11-23. Last modified 2026-06-16.