The fpu_fxrstor function in arch/x86/i387.c in Xen 4.x does not properly handle writes to the hardware FSW.ES bit when running on AMD64 processors, which allows local guest OS users to obtain sensitive register content information from another guest by leveraging pending exception and mask bits. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-2076.
CVSS Details
- CVSS 3.1 Base Score: 3.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade xen | Aug 30, 2017 | Apr 19, 2016 |
| Debian | — | Upgrade xen | Apr 22, 2016 | Apr 13, 2016 |
| Suse | — | Upgrade xen-libs-32bitUpgrade xen-doc-htmlUpgrade xen-kmp-traceUpgrade xenUpgrade xen-tools-domuUpgrade xen-kmp-paeUpgrade xen-libsUpgrade xen-develUpgrade xen-doc-pdfUpgrade xen-toolsUpgrade xen-kmp-default | Aug 26, 2016 | Apr 13, 2016 |
| Ubuntu | — | Upgrade xen | Nov 19, 2024 | Apr 13, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub