Lucene search

K
redhatRedHatRHSA-2016:2963
HistoryDec 20, 2016 - 12:00 a.m.

(RHSA-2016:2963) Important: xen security update

2016-12-2000:00:00
access.redhat.com
36

0.001 Low

EPSS

Percentile

26.7%

Xen is a virtual machine monitor

Security Fix(es):

  • An out of bounds array access issue was found in the Xen virtual machine
    monitor, built with the QEMU ioport support. It could occur while doing ioport
    read/write operations, if guest was to supply a 32bit address parameter. A
    privileged guest user/process could use this flaw to potentially escalate their
    privileges on a host. (CVE-2016-9637)

Red Hat would like to thank the Xen project for reporting this issue.