vulnerability

FreeBSD: VID-80A897A2-C1A6-11E6-AE1B-002590263BF5 (CVE-2016-9932): xen-kernel -- x86 CMPXCHG8B emulation fails to ignore operand size override

Severity
2
CVSS
(AV:L/AC:L/Au:N/C:P/I:N/A:N)
Published
Dec 13, 2016
Added
Dec 14, 2016
Modified
May 7, 2019

Description

CMPXCHG8B emulation in Xen 3.3.x through 4.7.x on x86 systems allows local HVM guest OS users to obtain sensitive information from host stack memory via a "supposedly-ignored" operand size prefix.

Solution

freebsd-upgrade-package-xen-kernel
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.