PT-2016-1286 · Xen+1 · Xen+1

Ling Liu

·

Published

2016-02-19

·

Updated

2024-06-15

·

CVE-2016-2271

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Xen versions 4.6.x and earlier
Description The issue is related to errors in pointer dereferencing in the VMX component of the Xen hypervisor. It can be exploited by a local attacker to cause a denial of service, specifically a guest crash, through vectors related to a non-canonical RIP. The estimated number of potentially affected devices worldwide is not available.
Recommendations For Xen versions 4.6.x and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2016-00583
CVE-2016-2271
DLA-479-1
DSA-3519-1
MGASA-2016-0098
OPENSUSE-SU-2016_0995-1
OPENSUSE-SU-2024:10196-1
SUSE-SU-2016:0873-1
SUSE-SU-2016:0955-1
SUSE-SU-2016:1154-1
SUSE-SU-2016:1318-1
SUSE-SU-2016:1745-1

Affected Products

Suse
Xen