Access control error - CVE-2016-7093
Published: September 9, 2016
Vulnerability identifier: #VU389
CSH Severity: Medium
CVSS v4: 6.7 [CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2016-7093
CWE-ID: CWE-284
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows local user to get elevated privileges on the host system.
The vulnerability exists due to instruction pointer truncation error that allows a local administrative user on the HVM guest system to gain priviliges on the target system.
Successful exploitation of this vulnerability will result in gaining elevated privileges by the guest attacker.
The vulnerability exists due to instruction pointer truncation error that allows a local administrative user on the HVM guest system to gain priviliges on the target system.
Successful exploitation of this vulnerability will result in gaining elevated privileges by the guest attacker.
Affected software
Gentoo Linux
SUSE Linux
Fedora
xen (Alpine package)
xen
SUSE Linux
Fedora
xen (Alpine package)
xen
How to mitigate CVE-2016-7093
Install patched versions from vendor's website:
xsa186-0001-x86-emulate-Correct-boundary-interactions-of-emulate.patchxsa186-0002-hvm-fep-Allow-testing-of-instructions-crossing-the-1.patch
xsa186-4.6-0002-hvm-fep-Allow-testing-of-instructions-crossing-the.patch
xsa186-4.7-0002-hvm-fep-Allow-testing-of-instructions-crossing-the.patch
xen (Alpine package) - addressed in versions 4.5.3-r1, 4.6.3-r2
xen - addressed in versions 4.5.3-10.fc23, 4.6.3-5.fc24, 4.7.0-5.fc25
xen - addressed in versions 4.5.3-10.fc23, 4.6.3-5.fc24, 4.7.0-5.fc25