CVE Vulnerabilities

CVE-2016-7093

Published: Sep 21, 2016 | Modified: Jul 01, 2017
CVSS 3.x
8.2
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
6 IMPORTANT
AV:N/AC:M/Au:S/C:P/I:P/A:P
RedHat/V3
8.5 IMPORTANT
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Ubuntu
MEDIUM

Xen 4.5.3, 4.6.3, and 4.7.x allow local HVM guest OS administrators to overwrite hypervisor memory and consequently gain host OS privileges by leveraging mishandling of instruction pointer truncation during emulation.

Affected Software

Name Vendor Start Version End Version
Xen Xen 4.5.3 (including) 4.5.3 (including)
Xen Xen 4.6.3 (including) 4.6.3 (including)
Xen Xen 4.7.0 (including) 4.7.0 (including)

References