The xrstor function in arch/x86/xstate.c in Xen 4.x does not...
Vulnerability Description
The xrstor function in arch/x86/xstate.c in Xen 4.x does not properly handle writes to the hardware FSW.ES bit when running on AMD64 processors, which allows local guest OS users to obtain sensitive register content information from another guest by leveraging pending exception and mask bits. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-2076.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2016-3158
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.oracle.com/technetwork/topics/security/ovmbulletinjul2016-3090546.html
- http://lists.fedoraproject.org/pipermail/package-announce/2016-April/181699.html
- http://www.securityfocus.com/bid/85714
- http://xenbits.xen.org/xsa/xsa172-4.3.patch
- http://xenbits.xen.org/xsa/advisory-172.html
- http://lists.fedoraproject.org/pipermail/package-announce/2016-April/181729.html
- http://xenbits.xen.org/xsa/xsa172.patch
- http://www.securitytracker.com/id/1035435
- http://support.citrix.com/article/CTX209443
- http://www.debian.org/security/2016/dsa-3554
More from xen
View All →Affected Vendor
Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.