![]() |
Inicial ▼ Bookkeeping
Online ▼ Auditorias ▼
DNS
Administrado ▼
Acerca de DNS
Ordenar/Renovar
Preguntas Frecuentes
AUP
Dynamic DNS Clients
Configurar Dominios Dynamic DNS Update Password Monitoreo
de Redes ▼
Enterprise
Avanzado
Estándarr
Prueba
Preguntas Frecuentes
Resumen de Precio/Funciones
Ordenar
Muestras
Configure/Status Alert Profiles | ||
ID de Prueba: | 1.3.6.1.4.1.25623.1.0.105895 |
Categoría: | Citrix Xenserver Local Security Checks |
Título: | Citrix XenServer Multiple Security Updates (CTX216071) |
Resumen: | A number of security vulnerabilities have been identified in; Citrix XenServer that may allow malicious privileged code running within a guest VM to compromise the host. |
Descripción: | Summary: A number of security vulnerabilities have been identified in Citrix XenServer that may allow malicious privileged code running within a guest VM to compromise the host. Vulnerability Insight: The following vulnerabilities have been addressed: - CVE-2016-7092 (High): x86: Disallow L3 recursive pagetable for 32-bit guests - CVE-2016-7093 (High): x86: Mishandling of instruction pointer truncation during emulation - CVE-2016-7094 (Medium): x86 HVM: Overflow of sh_ctxt->seg_reg[] - CVE-2016-7154 (High): use after free in FIFO event channel code Affected Software/OS: These vulnerabilities affect all currently supported versions of Citrix XenServer up to and including Citrix XenServer 7.0. Solution: Apply the hotfix referenced in the advisory. CVSS Score: 7.2 CVSS Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C |
Referencia Cruzada: |
Common Vulnerability Exposure (CVE) ID: CVE-2016-7092 BugTraq ID: 92862 http://www.securityfocus.com/bid/92862 Debian Security Information: DSA-3663 (Google Search) http://www.debian.org/security/2016/dsa-3663 https://security.gentoo.org/glsa/201611-09 http://www.securitytracker.com/id/1036751 Common Vulnerability Exposure (CVE) ID: CVE-2016-7093 BugTraq ID: 92865 http://www.securityfocus.com/bid/92865 http://www.securitytracker.com/id/1036752 Common Vulnerability Exposure (CVE) ID: CVE-2016-7094 BugTraq ID: 92864 http://www.securityfocus.com/bid/92864 http://www.securitytracker.com/id/1036753 Common Vulnerability Exposure (CVE) ID: CVE-2016-7154 BugTraq ID: 92863 http://www.securityfocus.com/bid/92863 http://www.c7zero.info/stuff/csw2017_ExploringYourSystemDeeper_updated.pdf http://www.securitytracker.com/id/1036754 |
Copyright | Copyright (C) 2016 Greenbone AG |
Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa. Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora. |