CVE-2016-9637: High severity Citrix XenServer vulnerability
Published Feb 16, 2017
·Updated
The (1) ioportread and (2) ioportwrite functions in Xen, when qemu is used as a device model within Xen, might allow local x86 HVM guest OS administrators to gain qemu process privileges via vectors involving an out-of-range ioport access.
Affected Software
4 affected components
Citrix XenServer=6.0.2
Citrix XenServer=6.2.0-sp1
Citrix XenServer=6.5-sp1
Citrix XenServer=7.0
Event History
Feb 16, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Feb 17, 2017
Data Sourced
via NVD·02:59 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-9637?
CVE-2016-9637 is rated as medium severity due to its potential to allow privilege escalation.
2
How do I fix CVE-2016-9637?
To fix CVE-2016-9637, update to the latest version of XenServer for your specific version.
3
Who is affected by CVE-2016-9637?
CVE-2016-9637 affects local x86 HVM guest OS administrators using specific versions of XenServer.
4
What are the vulnerable versions associated with CVE-2016-9637?
Vulnerable versions associated with CVE-2016-9637 include XenServer 6.0.2, 6.2.0-sp1, 6.5-sp1, and 7.0.
5
What could an attacker achieve with CVE-2016-9637?
An attacker could gain qemu process privileges through out-of-range ioport access.