Input validation error in Xen - CVE-2016-9380

 

Input validation error in Xen - CVE-2016-9380

Published: January 23, 2017 / Updated: July 28, 2020


Vulnerability identifier: #VU32217
CSH Severity: Low
CVSS v4: 8.6 [CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:N/SC:H/SI:H/SA:N]
CVE-ID: CVE-2016-9380
CWE-ID: CWE-20
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local authenticated user to read and manipulate data.

The pygrub boot loader emulator in Xen, when nul-delimited output format is requested, allows local pygrub-using guest OS administrators to read or delete arbitrary files on the host via NUL bytes in the bootloader configuration file.


Affected software

Xen
xen (Alpine package)
xen
Fedora

How to mitigate CVE-2016-9380

Install update from vendor's website.

xen (Alpine package) - update to 4.5.3-r2
xen - addressed in versions 4.5.5-4.fc23, 4.6.4-2.fc24, 4.7.1-3.fc25

External References

Related Security Bulletins