CVE-2016-9815
published 2017-02-27CVE-2016-9815: Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host panic) by sending an asynchronous abort.
PriorityP421medium6.5CVSS 3.0
AVLACLPRLUINSCCNINAH
EPSS
0.46%
37.7th percentile
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host panic) by sending an asynchronous abort.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | xen | < xen 4.8.0-1 (bookworm) | xen 4.8.0-1 (bookworm) |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:N/I:N/A:C
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-r44c-27fg-ccmv: Xen through 4
ghsa_unreviewed·2022-05-17
CVE-2016-9815 [MEDIUM] CWE-284 GHSA-r44c-27fg-ccmv: Xen through 4
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host panic) by sending an asynchronous abort.
OSV
CVE-2016-9815: Xen through 4
osv·2017-02-27·CVSS 6.5
CVE-2016-9815 [MEDIUM] CVE-2016-9815: Xen through 4
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host panic) by sending an asynchronous abort.
Red Hat
xen: ARM guests may induce host asynchronous abort (XSA-201)
vendor_redhat·2016-11-29·CVSS 6.5
CVE-2016-9815 [MEDIUM] xen: ARM guests may induce host asynchronous abort (XSA-201)
xen: ARM guests may induce host asynchronous abort (XSA-201)
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host panic) by sending an asynchronous abort.
Package: xen (Red Hat Enterprise Linux 5) - Will not fix
Debian
CVE-2016-9815: xen - Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (...
vendor_debian·2016·CVSS 6.5
CVE-2016-9815 [MEDIUM] CVE-2016-9815: xen - Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (...
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host panic) by sending an asynchronous abort.
Scope: local
bookworm: resolved (fixed in 4.8.0-1)
bullseye: resolved (fixed in 4.8.0-1)
forky: resolved (fixed in 4.8.0-1)
sid: resolved (fixed in 4.8.0-1)
trixie: resolved (fixed in 4.8.0-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201) [fedora-all]
bugzilla·2016-11-29·CVSS 6.5
CVE-2016-9815 [MEDIUM] CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201) [fedora-all]
CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201) [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message
Bugzilla
CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201)
bugzilla·2016-11-29·CVSS 6.5
CVE-2016-9815 [MEDIUM] CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201)
CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201)
ISSUE DESCRIPTION
Depending on how the hardware and firmware have been integrated,
guest-triggered asynchronous aborts (SError on ARMv8) may be received
by the hypervisor. The current action is to crash the host.
A guest might trigger an asynchronous abort when accessing memory
mapped hardware in a non-conventional way. Even if device
pass-through has not been configured, the hypervisor may give the
guest access to memory mapped hardware in order to take advantage of
hardware virtualization.
IMPACT
A malicious guest may be able to crash the host.
VULNERABLE SYSTEMS
All Xen versions which support ARM are potentially affected.
Whether a particular ARM systems is
Bugzilla
CVE-2014-9815 ImageMagick: crash on corrupted wpg file
bugzilla·2016-06-07·CVSS 5.5
CVE-2014-9815 [MEDIUM] CVE-2014-9815 ImageMagick: crash on corrupted wpg file
CVE-2014-9815 ImageMagick: crash on corrupted wpg file
Do not continue on corrupted wpg file.
CVE assignment:
http://seclists.org/oss-sec/2016/q2/459
Upstream patch:
https://anonscm.debian.org/cgit/collab-maint/imagemagick.git/commit/?h=debian-patches/6.8.9.9-4-for-upstream&id=1eb3064a9e4a81d0b8cd414e3dcd7fe9b158f241
http://www.openwall.com/lists/oss-security/2016/11/29/3http://www.openwall.com/lists/oss-security/2016/12/05/7http://www.securityfocus.com/bid/94581http://www.securitytracker.com/id/1037358http://xenbits.xen.org/xsa/advisory-201.htmlhttp://xenbits.xen.org/xsa/xsa201-1.patchhttps://security.gentoo.org/glsa/201612-56http://www.openwall.com/lists/oss-security/2016/11/29/3http://www.openwall.com/lists/oss-security/2016/12/05/7http://www.securityfocus.com/bid/94581http://www.securitytracker.com/id/1037358http://xenbits.xen.org/xsa/advisory-201.htmlhttp://xenbits.xen.org/xsa/xsa201-1.patchhttps://security.gentoo.org/glsa/201612-56
2017-02-27
Published