PT-2017-7699 · Xen+1 · Xen+1

Jan Beulich

+1

·

Publicado

2016-12-21

·

Atualizado

2024-06-15

·

CVE-2016-10013

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Xen versions prior to 4.9
Description The issue allows local 64-bit x86 HVM guest OS users to gain privileges by leveraging mishandling of SYSCALL singlestep during emulation.
Recommendations For versions prior to 4.9, update to version 4.9 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-10013
DLA-783-1
DSA-3847-1
MGASA-2017-0012
OPENSUSE-SU-2017_0005-1
OPENSUSE-SU-2017_0007-1
OPENSUSE-SU-2017_0008-1
OPENSUSE-SU-2024:11520-1
SUSE-SU-2016:3207-1
SUSE-SU-2016:3208-1
SUSE-SU-2016:3221-1
SUSE-SU-2016:3241-1
SUSE-SU-2016_3207-1
SUSE-SU-2016_3208-1
SUSE-SU-2016_3221-1
SUSE-SU-2016_3241-1
SUSE-SU-2017:0718-1

Produtos afetados

Suse
Xen