ZeroHour

CVE-2016-4962

CVSS 3.0
6.7 medium
EPSS
<1%p33
Published
()
Modified
Description

The libxl device-handling in Xen 4.6.x and earlier allows local OS guest administrators to cause a denial of service (resource consumption or management facility confusion) or gain host OS privileges by manipulating information in guest controlled areas of xenstore.

Vendors
oraclexen
Products
vm server, xen
Weakness
CWE-264
Vector
CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.