6.9 Medium
AI Score
Confidence
Low
0.001 Low
EPSS
Percentile
26.7%
Xen 4.5.3, 4.6.3, and 4.7.x allow local HVM guest OS administrators to overwrite hypervisor memory and consequently gain host OS privileges by leveraging mishandling of instruction pointer truncation during emulation.
support.citrix.com/article/CTX216071
www.securityfocus.com/bid/92865
www.securitytracker.com/id/1036752
xenbits.xen.org/xsa/advisory-186.html
xenbits.xen.org/xsa/xsa186-0001-x86-emulate-Correct-boundary-interactions-of-emulate.patch
security.gentoo.org/glsa/201611-09