CVE-2016-10024
published 2017-01-26CVE-2016-10024: Xen through 4.8.x allows local x86 PV guest OS kernel administrators to cause a denial of service (host hang or crash) by modifying the instruction stream…
PriorityP419medium6CVSS 3.0
AVLACLPRHUINSCCNINAH
EPSS
0.43%
34.9th percentile
Xen through 4.8.x allows local x86 PV guest OS kernel administrators to cause a denial of service (host hang or crash) by modifying the instruction stream asynchronously while performing certain kernel operations.
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| citrix | citrix_adm | — | — |
| citrix | citrix_hypervisor | — | — |
| citrix | citrix_virtual_apps_and_desktops | — | — |
| citrix | endpoint_management | — | — |
| citrix | netscaler_adc | — | — |
| citrix | netscaler_gateway | — | — |
| citrix | xenserver | — | — |
| citrix | xenserver | — | — |
| citrix | xenserver | — | — |
| citrix | xenserver | — | — |
| citrix | xenserver | — | — |
| debian | xen | < xen 4.8.0-1 (bookworm) | xen 4.8.0-1 (bookworm) |
| xen | xen | <= 4.8.0 | — |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
CVSS provenance
nvdv3.06.0MEDIUMCVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:N/I:N/A:C
osv6.0MEDIUM
vendor_debian6.0MEDIUM
vendor_redhat6.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
xen: x86 PV guests may be able to mask interrupts (XSA-202)
vendor_redhat·2016-12-21·CVSS 6.0
CVE-2016-10024 [MEDIUM] xen: x86 PV guests may be able to mask interrupts (XSA-202)
xen: x86 PV guests may be able to mask interrupts (XSA-202)
Xen through 4.8.x allows local x86 PV guest OS kernel administrators to cause a denial of service (host hang or crash) by modifying the instruction stream asynchronously while performing certain kernel operations.
Package: xen (Red Hat Enterprise Linux 5) - Will not fix
Debian
CVE-2016-10024: xen - Xen through 4.8.x allows local x86 PV guest OS kernel administrators to cause a ...
vendor_debian·2016·CVSS 6.0
CVE-2016-10024 [MEDIUM] CVE-2016-10024: xen - Xen through 4.8.x allows local x86 PV guest OS kernel administrators to cause a ...
Xen through 4.8.x allows local x86 PV guest OS kernel administrators to cause a denial of service (host hang or crash) by modifying the instruction stream asynchronously while performing certain kernel operations.
Scope: local
bookworm: resolved (fixed in 4.8.0-1)
bullseye: resolved (fixed in 4.8.0-1)
forky: resolved (fixed in 4.8.0-1)
sid: resolved (fixed in 4.8.0-1)
trixie: resolved (fixed in 4.8.0-1)
Citrix
Citrix Security Bulletin CTX219378
vendor_citrix·CVSS 6.0
CVE-2016-10024 [MEDIUM] Citrix Security Bulletin CTX219378
Citrix Security Bulletin CTX219378
CVE References: CVE-2016-10024, CVE-2016-10025, CVE-2025-12101, CVE-2025-62626, CVE-2026-23554, CVE-2026-3055, CVE-2026-4368, CVE-2026-4397
Affected Products: Citrix ADM, Citrix Hypervisor, Citrix Virtual Apps and Desktops, Endpoint Management, NetScaler ADC, NetScaler Gateway, XenServer
GHSA
GHSA-w5vf-65qx-rxw9: Xen through 4
ghsa_unreviewed·2022-05-17
CVE-2016-10024 [MEDIUM] CWE-20 GHSA-w5vf-65qx-rxw9: Xen through 4
Xen through 4.8.x allows local x86 PV guest OS kernel administrators to cause a denial of service (host hang or crash) by modifying the instruction stream asynchronously while performing certain kernel operations.
OSV
CVE-2016-10024: Xen through 4
osv·2017-01-26·CVSS 6.0
CVE-2016-10024 [MEDIUM] CVE-2016-10024: Xen through 4
Xen through 4.8.x allows local x86 PV guest OS kernel administrators to cause a denial of service (host hang or crash) by modifying the instruction stream asynchronously while performing certain kernel operations.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-10024 CVE-2016-10025 xen: various flaws [fedora-all]
bugzilla·2016-12-21·CVSS 6.0
CVE-2016-10024 [MEDIUM] CVE-2016-10024 CVE-2016-10025 xen: various flaws [fedora-all]
CVE-2016-10024 CVE-2016-10025 xen: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedora. While on
Bugzilla
CVE-2016-10024 xsa202 xen: x86 PV guests may be able to mask interrupts (XSA-202)
bugzilla·2016-12-08·CVSS 6.0
CVE-2016-10024 [MEDIUM] CVE-2016-10024 xsa202 xen: x86 PV guests may be able to mask interrupts (XSA-202)
CVE-2016-10024 xsa202 xen: x86 PV guests may be able to mask interrupts (XSA-202)
ISSUE DESCRIPTION
Certain PV guest kernel operations (page table writes in particular)
need emulation, and use Xen's general x86 instruction emulator. This
allows a malicious guest kernel which asynchronously modifies its
instruction stream to effect the clearing of EFLAGS.IF from the state
used to return to guest context.
IMPACT
A malicious guest kernel administrator can cause a host hang or
crash, resulting in a Denial of Service.
VULNERABLE SYSTEMS
All Xen versions are vulnerable.
Only x86 PV guests can exploit the vulnerability.
Neither ARM guests nor x86 HVM guests can exploit the vulnerability.
MITIGATION
Running only HVM guests will avoid the vulnerability.
For PV guests the vulnerability ca
http://www.debian.org/security/2017/dsa-3847http://www.securityfocus.com/bid/95021http://www.securitytracker.com/id/1037517http://xenbits.xen.org/xsa/advisory-202.htmlhttps://security.gentoo.org/glsa/201612-56https://support.citrix.com/article/CTX219378http://www.debian.org/security/2017/dsa-3847http://www.securityfocus.com/bid/95021http://www.securitytracker.com/id/1037517http://xenbits.xen.org/xsa/advisory-202.htmlhttps://security.gentoo.org/glsa/201612-56https://support.citrix.com/article/CTX219378
2017-01-26
Published