CVE-2016-2270: Debian Linux

Medium severity, CVSS 6.8. EPSS: 1.5% chance of exploitation in the next 30 days.

Xen 4.6.x and earlier allows local guest administrators to cause a denial of service (host reboot) via vectors related to multiple mappings of MMIO pages with different cachability settings.

Affected products

  • Debian Debian Linux: version 7.0 only; version 8.0 only
  • Fedoraproject Fedora: version 22 only; version 23 only
  • Oracle Vm Server: version 3.4 only
  • Xen Xen: up to and including 4.6.1

Published 2016-02-19. Last modified 2026-06-17.