buildroot ▾
›
master ▾
›
vulnerability
›
CVE-2016-9386
Component Overview
Vulnerability Overview
Name
CVE-2016-9386
Source
NVD (
link
)
Debian (
link
)
Description
The x86 emulator in Xen does not properly treat x86 NULL segments as unusable when accessing memory, which might allow local HVM guest users to gain privileges via vectors involving "unexpected" base/limit values.
CWEs
CWE-264
Published Date
Jan 23, 2017
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://www.securityfocus.com/bid/94471
VDB Entry
http://www.securitytracker.com/id/1037340
VDB Entry
http://xenbits.xen.org/xsa/advisory-191.html
Patch
https://support.citrix.com/article/CTX218775
Patch
http://www.securityfocus.com/bid/94471
VDB Entry
http://www.securitytracker.com/id/1037340
VDB Entry
http://xenbits.xen.org/xsa/advisory-191.html
Patch
https://support.citrix.com/article/CTX218775
Patch
Analysis
#
Affected Component
Analysis
xen
Exploitable
Vulnerability Ratings
#
7.8
other
4.6
CVSSv2
Others affected component
#
Name
Project
Project Version
Version
Status
xen
buildroot
2025.02.x
4.14.6
Exploitable