VDB
ALPINE-CVE-2016-9377
ALPINE-CVE-2016-9377
PUBLISHED
CVSS 5.5 MEDIUM
Xen 4.5.x through 4.7.x on AMD systems without the NRip feature, when emulating instructions that generate software interrupts, allows local HVM guest OS users to cause a denial of service (guest crash) by leveraging IDT entry miscalculation.
Risk Scores
CVSS v3.0
5.5
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Alpine:v3.20 | xen | 4.0.1-r1, 4.0.1-r0, 4.7.1-r0 |
| Alpine:v3.18 | xen | 4.7.0-r5, 4.7.1-r0, 4.7.0-r4 |
| Alpine:v3.22 | xen | 4.0.1-r0, 0, 4.7.1-r0 |
| Alpine:v3.12 | xen | 4.7.0-r5, 4.7.1-r0, 4.7.0-r4 |
| Alpine:v3.9 | xen | 0, 4.0.1-r0, 4.0.1-r1 |
| Alpine:v3.17 | xen | 4.7.0-r5, 4.7.0-r4, 4.7.0-r3 |
| Alpine:v3.7 | xen | 4.6.0-r0, 0, 4.0.1-r0 |
| Alpine:v3.21 | xen | 4.7.1-r0, 0, 4.0.1-r0 |
| Alpine:v3.10 | xen | 4.2.1-r7, 0, 4.0.1-r0 |
| Alpine:v3.11 | xen | 0, 4.7.1-r0, 4.7.0-r5 |
| Alpine:v3.15 | xen | 4.7.1-r0, 4.7.0-r4, 4.7.0-r3 |
| Alpine:v3.8 | xen | 4.1.2-r7, 4.7.1-r0, 4.0.1-r0 |
| Alpine:v3.14 | xen | 4.3.0-r8, 0, 4.0.1-r3 |
| Alpine:v3.13 | xen | 4.7.1-r0, 4.7.0-r5, 4.7.0-r4 |
| Alpine:v3.19 | xen | 4.0.1-r0, 0, 4.3.1-r3 |
| Alpine:v3.6 | xen | 4.7.1-r0, 0, 4.7.0-r5 |
| Alpine:v3.23 | xen | 4.7.1-r0, 0, 4.0.1-r0 |
| Alpine:v3.5 | xen | 4.0.1-r0, 4.7.1-r0, 4.7.0-r5 |
| Alpine:v3.16 | xen | 4.0.1-r1, 0, 4.7.1-r0 |
Timeline
- Feb 22, 2017 CVE Published
- Dec 3, 2025 CVE Updated
- Apr 30, 2026 Distribution Patch