CVE-2013-2212: Xen

Medium severity, CVSS 5.7. EPSS: 0.6% chance of exploitation in the next 30 days.

The vmx_set_uc_mode function in Xen 3.3 through 4.3, when disabling caches, allows local HVM guests with access to memory mapped I/O regions to cause a denial of service (CPU consumption and possibly hypervisor or guest kernel panic) via a crafted GFN range.

Affected products

  • Xen Xen: version 3.3.0 only; version 3.3.1 only; version 3.3.2 only; version 3.4.0 only; version 3.4.1 only; version 3.4.2 only; …

Published 2013-08-28. Last modified 2026-06-16.