The PV pagetable code in arch/x86/mm.c in Xen 4.7.x and earlier allows local 32-bit PV guest OS administrators to gain host OS privileges by leveraging fast-paths for updating pagetable entries.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html | release notes |
http://xenbits.xen.org/xsa/advisory-182.html | patch vendor advisory mitigation |
http://xenbits.xen.org/xsa/xsa182-4.6.patch | patch |
http://support.citrix.com/article/CTX214954 | vendor advisory |
https://security.gentoo.org/glsa/201611-09 | vendor advisory |
http://xenbits.xen.org/xsa/xsa182-unstable.patch | patch |
http://xenbits.xen.org/xsa/xsa182-4.5.patch | patch |
http://www.debian.org/security/2016/dsa-3633 | vendor advisory |
http://www.securitytracker.com/id/1036446 | vdb entry third party advisory |
http://www.securityfocus.com/bid/92131 | vdb entry third party advisory |