CVE-2016-9816: Medium severity XEN Xen vulnerability
Published Feb 27, 2017
·Updated
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving an asynchronous abort while at EL2.
Affected Software
2 affected components
XEN Xen=4.7.0
XEN Xen=4.7.1
Remediation
Patch Available
Patch Available
Event History
Feb 27, 2017
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Data Sourced
via NVD·10:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-9816?
CVE-2016-9816 is classified as a medium severity vulnerability, leading to a denial of service on the host.
2
How do I fix CVE-2016-9816?
To fix CVE-2016-9816, upgrade your Xen hypervisor to a version higher than 4.7.1 where this vulnerability has been addressed.
3
What impact does CVE-2016-9816 have on my system?
CVE-2016-9816 can allow local ARM guest OS users to crash the host system, disrupting services and availability.
4
Which versions of Xen are affected by CVE-2016-9816?
CVE-2016-9816 affects Xen versions 4.7.0 and 4.7.1.
5
Who is vulnerable to CVE-2016-9816?
Users operating affected versions of Xen with local ARM guest OSs are vulnerable to CVE-2016-9816.