CVE-2016-9818
- EPSS 0.11%
- Veröffentlicht 27.02.2017 22:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving an asynchronous abort while at HYP.
CVE-2016-9377
- EPSS 0.07%
- Veröffentlicht 22.02.2017 16:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest crash) by leveraging IDT entry miscalculation.
CVE-2016-9378
- EPSS 0.06%
- Veröffentlicht 22.02.2017 16:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest crash) by leveraging an incorrect choice for software ...
CVE-2016-9384
- EPSS 0.08%
- Veröffentlicht 22.02.2017 16:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Xen 4.7 allows local guest OS users to obtain sensitive host information by loading a 32-bit ELF symbol table.
CVE-2016-10013
- EPSS 0.1%
- Veröffentlicht 26.01.2017 15:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Xen through 4.8.x allows local 64-bit x86 HVM guest OS users to gain privileges by leveraging mishandling of SYSCALL singlestep during emulation.
- EPSS 0.14%
- Veröffentlicht 26.01.2017 15:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Xen through 4.8.x allows local x86 PV guest OS kernel administrators to cause a denial of service (host hang or crash) by modifying the instruction stream asynchronously while performing certain kernel operations.
CVE-2016-10025
- EPSS 0.12%
- Veröffentlicht 26.01.2017 15:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
VMFUNC emulation in Xen 4.6.x through 4.8.x on x86 systems using AMD virtualization extensions (aka SVM) allows local HVM guest OS users to cause a denial of service (hypervisor crash) by leveraging a missing NULL pointer check.
CVE-2016-9932
- EPSS 0.07%
- Veröffentlicht 26.01.2017 15:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
CMPXCHG8B emulation in Xen 3.3.x through 4.7.x on x86 systems allows local HVM guest OS users to obtain sensitive information from host stack memory via a "supposedly-ignored" operand size prefix.
CVE-2016-9379
- EPSS 0.1%
- Veröffentlicht 23.01.2017 21:59:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
The pygrub boot loader emulator in Xen, when S-expression output format is requested, allows local pygrub-using guest OS administrators to read or delete arbitrary files on the host via string quotes and S-expressions in the bootloader configuration ...
CVE-2016-9380
- EPSS 0.09%
- Veröffentlicht 23.01.2017 21:59:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
The pygrub boot loader emulator in Xen, when nul-delimited output format is requested, allows local pygrub-using guest OS administrators to read or delete arbitrary files on the host via NUL bytes in the bootloader configuration file.