Race condition in QEMU in Xen allows local x86 HVM guest OS administrators to gain privileges by changing certain data on shared rings, aka a "double fetch" vulnerability.
2017-01-23T21:59:02.800
2025-04-20T01:37:25.860
Deferred
CVSSv3.1: 7.5 (HIGH)
AV:L/AC:M/Au:N/C:C/I:C/A:C
3.4
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | qemu | qemu | ≤ 2.7.1 | Yes |
| Application | qemu | qemu | 2.8.0 | Yes |
| Application | citrix | xenserver | 6.0.2 | Yes |
| Application | citrix | xenserver | 6.2.0 | Yes |
| Application | citrix | xenserver | 6.5 | Yes |
| Application | citrix | xenserver | 7.0 | Yes |