CVE-2016-1571: Citrix Xenserver
Medium severity, CVSS 6.3. EPSS: 1.3% chance of exploitation in the next 30 days.
The paging_invlpg function in include/asm-x86/paging.h in Xen 3.3.x through 4.6.x, when using shadow mode paging or nested virtualization is enabled, allows local HVM guest users to cause a denial of service (host crash) via a non-canonical guest address in an INVVPID instruction, which triggers a hypervisor bug check.
Affected products
- Citrix Xenserver: up to and including 6.5
- Xen Xen: version 3.3.0 only; version 3.3.1 only; version 3.3.2 only; version 3.4.0 only; version 3.4.1 only; version 3.4.2 only; …
Published 2016-01-22. Last modified 2026-06-17.