CVE-2016-9382: High severity XEN Xen vulnerability
Xen 4.0.x through 4.7.x mishandle x86 task switches to VM86 mode, which allows local 32-bit x86 HVM guest OS users to gain privileges or cause a denial of service (guest OS crash) by leveraging a guest operating system that uses hardware task switching and allows a new task to start in VM86 mode.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-9382?
CVE-2016-9382 is classified as a high severity vulnerability due to its potential to allow local privilege escalation or denial of service.
How do I fix CVE-2016-9382?
To fix CVE-2016-9382, you should update to a patched version of Xen that addresses the vulnerability.
What versions are affected by CVE-2016-9382?
CVE-2016-9382 affects Xen versions from 4.0.x through 4.7.x, including various XenServer versions.
What type of vulnerability is CVE-2016-9382?
CVE-2016-9382 is a local privilege escalation and denial of service vulnerability associated with improper handling of x86 task switches.
Can CVE-2016-9382 be exploited remotely?
No, CVE-2016-9382 requires local access to exploit, as it targets 32-bit x86 HVM guest OS users.