Lucene search

K
ubuntucveUbuntu.comUB:CVE-2016-3710
HistoryMay 09, 2016 - 12:00 a.m.

CVE-2016-3710

2016-05-0900:00:00
ubuntu.com
ubuntu.com
14

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

8.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

EPSS

0.002

Percentile

58.4%

The VGA module in QEMU improperly performs bounds checking on banked access
to video memory, which allows local guest OS administrators to execute
arbitrary code on the host by changing access modes after setting the bank
register, aka the “Dark Portal” issue.

Bugs

Notes

Author Note
mdeslaur A.K.A. “Dark Portal”
OSVersionArchitecturePackageVersionFilename
ubuntu14.04noarchqemu< 2.0.0+dfsg-2ubuntu1.24UNKNOWN
ubuntu15.10noarchqemu< 1:2.3+dfsg-5ubuntu9.4UNKNOWN
ubuntu16.04noarchqemu< 1:2.5+dfsg-5ubuntu10.1UNKNOWN
ubuntu12.04noarchqemu-kvm< 1.0+noroms-0ubuntu14.28UNKNOWN
ubuntu12.04noarchxen< 4.1.6.1-0ubuntu0.12.04.11UNKNOWN
ubuntu14.04noarchxen< 4.4.2-0ubuntu0.14.04.6UNKNOWN

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

CVSS3

8.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

CHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

EPSS

0.002

Percentile

58.4%