CVE-2016-9817
published 2017-02-27CVE-2016-9817: Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving a (1) data or (2) prefetch abort with the…
PriorityP420medium6.5CVSS 3.0
AVLACLPRLUINSCCNINAH
EPSS
0.46%
37.3th percentile
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving a (1) data or (2) prefetch abort with the ESR_EL2.EA bit set.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | xen | < xen 4.8.0-1 (bookworm) | xen 4.8.0-1 (bookworm) |
| xen | xen | — | — |
| xen | xen | — | — |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
| xen | xen | >= 0 < 4.8.0-1 | 4.8.0-1 |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:N/I:N/A:C
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
xen: ARM guests may induce host asynchronous abort (XSA-201)
vendor_redhat·2016-11-29·CVSS 6.5
CVE-2016-9817 [MEDIUM] xen: ARM guests may induce host asynchronous abort (XSA-201)
xen: ARM guests may induce host asynchronous abort (XSA-201)
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving a (1) data or (2) prefetch abort with the ESR_EL2.EA bit set.
Package: xen (Red Hat Enterprise Linux 5) - Will not fix
Debian
CVE-2016-9817: xen - Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (...
vendor_debian·2016·CVSS 6.5
CVE-2016-9817 [MEDIUM] CVE-2016-9817: xen - Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (...
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving a (1) data or (2) prefetch abort with the ESR_EL2.EA bit set.
Scope: local
bookworm: resolved (fixed in 4.8.0-1)
bullseye: resolved (fixed in 4.8.0-1)
forky: resolved (fixed in 4.8.0-1)
sid: resolved (fixed in 4.8.0-1)
trixie: resolved (fixed in 4.8.0-1)
GHSA
GHSA-gx95-jg8g-jg8q: Xen through 4
ghsa_unreviewed·2022-05-17
CVE-2016-9817 [MEDIUM] CWE-284 GHSA-gx95-jg8g-jg8q: Xen through 4
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving a (1) data or (2) prefetch abort with the ESR_EL2.EA bit set.
OSV
CVE-2016-9817: Xen through 4
osv·2017-02-27·CVSS 6.5
CVE-2016-9817 [MEDIUM] CVE-2016-9817: Xen through 4
Xen through 4.7.x allows local ARM guest OS users to cause a denial of service (host crash) via vectors involving a (1) data or (2) prefetch abort with the ESR_EL2.EA bit set.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201) [fedora-all]
bugzilla·2016-11-29·CVSS 6.5
CVE-2016-9815 [MEDIUM] CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201) [fedora-all]
CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201) [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message
Bugzilla
CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201)
bugzilla·2016-11-29·CVSS 6.5
CVE-2016-9815 [MEDIUM] CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201)
CVE-2016-9815 CVE-2016-9816 CVE-2016-9817 CVE-2016-9818 xsa201 xen: ARM guests may induce host asynchronous abort (XSA-201)
ISSUE DESCRIPTION
Depending on how the hardware and firmware have been integrated,
guest-triggered asynchronous aborts (SError on ARMv8) may be received
by the hypervisor. The current action is to crash the host.
A guest might trigger an asynchronous abort when accessing memory
mapped hardware in a non-conventional way. Even if device
pass-through has not been configured, the hypervisor may give the
guest access to memory mapped hardware in order to take advantage of
hardware virtualization.
IMPACT
A malicious guest may be able to crash the host.
VULNERABLE SYSTEMS
All Xen versions which support ARM are potentially affected.
Whether a particular ARM systems is
Bugzilla
CVE-2014-9817 ImageMagick: heap buffer overflow in pdb file handling
bugzilla·2016-06-07·CVSS 7.8
CVE-2014-9817 [HIGH] CVE-2014-9817 ImageMagick: heap buffer overflow in pdb file handling
CVE-2014-9817 ImageMagick: heap buffer overflow in pdb file handling
Avoid a heap buffer overflow in pdb file handling.
CVE assignment:
http://seclists.org/oss-sec/2016/q2/459
Upstream patch:
https://anonscm.debian.org/cgit/collab-maint/imagemagick.git/commit/?h=debian-patches/6.8.9.9-4-for-upstream&id=e24de96ab25b396ae914a7640ff4d61e58c40cf0
http://www.openwall.com/lists/oss-security/2016/11/29/3http://www.openwall.com/lists/oss-security/2016/12/05/7http://www.securityfocus.com/bid/94581http://www.securitytracker.com/id/1037358http://xenbits.xen.org/xsa/advisory-201.htmlhttp://xenbits.xen.org/xsa/xsa201-3-4.7.patchhttp://xenbits.xen.org/xsa/xsa201-3.patchhttps://security.gentoo.org/glsa/201612-56http://www.openwall.com/lists/oss-security/2016/11/29/3http://www.openwall.com/lists/oss-security/2016/12/05/7http://www.securityfocus.com/bid/94581http://www.securitytracker.com/id/1037358http://xenbits.xen.org/xsa/advisory-201.htmlhttp://xenbits.xen.org/xsa/xsa201-3-4.7.patchhttp://xenbits.xen.org/xsa/xsa201-3.patchhttps://security.gentoo.org/glsa/201612-56
2017-02-27
Published