Xen 4.5.3, 4.6.3, and 4.7.x allow local HVM guest OS administrators to overwrite hypervisor memory and consequently gain host OS privileges by leveraging mishandling of instruction pointer truncation during emulation.
CVSS Details
- CVSS 3.1 Base Score: 8.2
- CVSS 3.0 Vector: (CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade xen | Aug 30, 2017 | Sep 21, 2016 |
| Freebsd | — | Upgrade xen-kernel | Dec 4, 2016 | Dec 4, 2016 |
| Gentoo Linux | — | Upgrade app-emulation/xen-tools.Upgrade app-emulation/xen. | Oct 30, 2017 | Sep 21, 2016 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Sep 8, 2016 |
| Suse | — | Upgrade xen-develUpgrade xenUpgrade xen-tools-domUUpgrade xen-tools-xendomains-wait-diskUpgrade xen-doc-htmlUpgrade xen-kmp-paeUpgrade xen-libs-32bitUpgrade xen-libsUpgrade xen-toolsUpgrade xen-kmp-default | Oct 12, 2016 | Sep 21, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub