AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2016-3158

LOW · CVSS 3.8 EPSS 0.41%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-04-13 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2016-3158
Severity
LOW
CVSS
3.8
EPSS
0.41%

Original NVD Description

The xrstor function in arch/x86/xstate.c in Xen 4.x does not properly handle writes to the hardware FSW.ES bit when running on AMD64 processors, which allows local guest OS users to obtain sensitive register content information from another guest by leveraging pending exception and mask bits. NOTE: this vulnerability exists because of an incorrect fix for CVE-2013-2076.