CVE-2016-9385

Description

The x86 segment base write emulation functionality in Xen 4.4.x through 4.7.x allows local x86 PV guest OS administrators to cause a denial of service (host crash) by leveraging lack of canonical address checks.

Risk Information

Base Score
6.0
MODERATE
Vector
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.104

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in Citrix XenCenter 6.0.2Windows
Multiple Vulnerabilities are affected in Citrix XenCenter 6.2.0Windows
Multiple Vulnerabilities are affected in Citrix XenCenter 6.5Windows
Multiple Vulnerabilities are affected in Citrix XenCenter 7.0Windows
Improper Input Validation Vulnerability (CVE-2016-9385)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234