CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
96197 | CVE-2016-9377 | Candidate | Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest crash) by leveraging IDT entry miscalculation. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96198 | CVE-2016-9378 | Candidate | Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest crash) by leveraging an incorrect choice for software interrupt delivery. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96199 | CVE-2016-9379 | Candidate | The pygrub boot loader emulator in Xen, when S-expression output format is requested, allows local pygrub-using guest OS administrators to read or delete arbitrary files on the host via string quotes and S-expressions in the bootloader configuration file. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96200 | CVE-2016-9380 | Candidate | The pygrub boot loader emulator in Xen, when nul-delimited output format is requested, allows local pygrub-using guest OS administrators to read or delete arbitrary files on the host via NUL bytes in the bootloader configuration file. | Assigned (20161117) | None (candidate not yet proposed) | View | |
96201 | CVE-2016-9381 | Candidate | Race condition in QEMU in Xen allows local x86 HVM guest OS administrators to gain privileges by changing certain data on shared rings, aka a "double fetch" vulnerability. | Assigned (20161117) | None (candidate not yet proposed) | View |
Page 18633 of 20943, showing 5 records out of 104715 total, starting on record 93161, ending on 93165