CVE List

Id CVE No. Status Description Phase Votes Comments Actions
96197  CVE-2016-9377  Candidate  Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest crash) by leveraging IDT entry miscalculation.  Assigned (20161117)  None (candidate not yet proposed)    View
96198  CVE-2016-9378  Candidate  Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest crash) by leveraging an incorrect choice for software interrupt delivery.  Assigned (20161117)  None (candidate not yet proposed)    View
96199  CVE-2016-9379  Candidate  The pygrub boot loader emulator in Xen, when S-expression output format is requested, allows local pygrub-using guest OS administrators to read or delete arbitrary files on the host via string quotes and S-expressions in the bootloader configuration file.  Assigned (20161117)  None (candidate not yet proposed)    View
96200  CVE-2016-9380  Candidate  The pygrub boot loader emulator in Xen, when nul-delimited output format is requested, allows local pygrub-using guest OS administrators to read or delete arbitrary files on the host via NUL bytes in the bootloader configuration file.  Assigned (20161117)  None (candidate not yet proposed)    View
96201  CVE-2016-9381  Candidate  Race condition in QEMU in Xen allows local x86 HVM guest OS administrators to gain privileges by changing certain data on shared rings, aka a "double fetch" vulnerability.  Assigned (20161117)  None (candidate not yet proposed)    View

Page 18633 of 20943, showing 5 records out of 104715 total, starting on record 93161, ending on 93165

Actions