CVE-2016-9677: Infoleak
Published Jan 18, 2017
·Updated
Citrix Provisioning Services before 7.12 allows attackers to obtain sensitive kernel address information via unspecified vectors.
Affected Software
7 affected components
Citrix Provisioning Services=7.0
Citrix Provisioning Services=7.1
Citrix Provisioning Services=7.6
Citrix Provisioning Services=7.7
Citrix Provisioning Services=7.8
Citrix Provisioning Services=7.9
Citrix Provisioning Services=7.11
Event History
Jan 18, 2017
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
via NVD·10:59 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-9677?
CVE-2016-9677 has a moderate severity rating due to its potential to expose sensitive kernel address information.
2
How do I fix CVE-2016-9677?
To fix CVE-2016-9677, upgrade Citrix Provisioning Services to version 7.12 or later.
3
What types of systems are affected by CVE-2016-9677?
CVE-2016-9677 affects Citrix Provisioning Services versions 7.0, 7.1, 7.6, 7.7, 7.8, 7.9, and 7.11.
4
Can CVE-2016-9677 lead to further attacks?
Yes, exploiting CVE-2016-9677 could potentially lead to additional attacks by exposing sensitive system information.
5
Are there any known exploits for CVE-2016-9677?
As of now, there are no publicly known exploits specifically targeting CVE-2016-9677.