First published: Wed Sep 21 2016(Updated: )
Buffer overflow in Xen 4.7.x and earlier allows local x86 HVM guest OS administrators on guests running with shadow paging to cause a denial of service via a pagetable update.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xen xen-unstable | <=4.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-7094 has a medium severity rating due to its potential to cause denial of service on affected systems.
To fix CVE-2016-7094, upgrade to Xen version 4.8.0 or later where the vulnerability has been addressed.
CVE-2016-7094 affects local x86 HVM guest OS administrators on Xen systems running version 4.7.x and earlier with shadow paging.
The potential impacts of CVE-2016-7094 include system crashes and denial of service for guest operating systems.
CVE-2016-7094 can be exploited by local administrators, making it a low-barrier vulnerability for those with the necessary access.