CVE-2016-2270

Publication date 19 February 2016

Last updated 25 August 2025


Ubuntu priority

Cvss 3 Severity Score

6.8 · Medium

Score breakdown

Description

Xen 4.6.x and earlier allows local guest administrators to cause a denial of service (host reboot) via vectors related to multiple mappings of MMIO pages with different cachability settings.

Read the notes from the security team

Status

Package Ubuntu Release Status
xen 15.10 wily
Fixed 4.5.1-0ubuntu1.3
15.04 vivid Ignored end of life
14.04 LTS trusty
Fixed 4.4.2-0ubuntu0.14.04.5
12.04 LTS precise
Fixed 4.1.6.1-0ubuntu0.12.04.10

Notes


mdeslaur

hypervisor packages are in universe. For issues in the hypervisor, add appropriate tags to each section, ex: Tags_xen: universe-binary

Severity score breakdown

CVSS version: CVSS v3.0

Base score 6.8 · Medium

Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H


Access our resources on patching vulnerabilities