ZeroHour

CVE-2016-3961

CVSS 3.0
5.5 medium
EPSS
<1%p42
Published
()
Modified
Description

Xen and the Linux kernel through 4.5.x do not properly suppress hugetlbfs support in x86 PV guests, which allows local PV guest OS users to cause a denial of service (guest OS crash) by attempting to access a hugetlbfs mapped area.

Vendors
canonicalxen
Products
ubuntu linux, xen
Weakness
CWE-20
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.