6.8
CVE-2016-2270
- EPSS 1.48%
- Veröffentlicht 19.02.2016 16:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
- Erkennungen
Xen 4.6.x and earlier allows local guest administrators to cause a denial of service (host reboot) via vectors related to multiple mappings of MMIO pages with different cachability settings.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Debian ≫ Debian Linux Version 7.0
Debian ≫ Debian Linux Version 8.0
Fedoraproject ≫ Fedora Version 22
Fedoraproject ≫ Fedora Version 23
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.48% | 0.707 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 6.8 | 2.3 | 4 |
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
|
| NIST | 4.6 | 3.1 | 6.9 |
AV:L/AC:L/Au:S/C:N/I:N/A:C
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
https://security.gentoo.org/glsa/201604-03
http://www.debian.org/security/2016/dsa-3519
http://lists.fedoraproject.org/pipermail/package-announce/2016-February/177990.html
http://lists.fedoraproject.org/pipermail/package-announce/2016-March/178518.html
http://www.securitytracker.com/id/1035042
http://xenbits.xen.org/xsa/advisory-154.html