CVE-2016-4480
8.4
HIGH
CVSS 3.1
EPSS 0.39%
Description
The guest_walk_tables function in arch/x86/mm/guest_walk.c in Xen 4.6.x and earlier does not properly handle the Page Size (PS) page table entry bit at the L4 and L3 page table levels, which might allow local guest OS users to gain privileges via a crafted mapping of memory.
How to fix CVE-2016-4480
To remediate CVE-2016-4480, upgrade the affected package to a fixed version below.
- Debian/xen—upgrade to 4.8.0~rc3-1 or later
Is CVE-2016-4480 being exploited?
Low — EPSS is 0.4%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 4.8.0~rc3-1
CVSS scores
| Source | Version | Severity | Vector |
|---|---|---|---|
| osv | CVSS 3.1 | HIGH8.4 | CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |