CVE-2016-3710: Canonical Ubuntu Linux
High severity, CVSS 8.8. EPSS: 0.9% chance of exploitation in the next 30 days.
The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes after setting the bank register, aka the "Dark Portal" issue.
Affected products
- Canonical Ubuntu Linux: version 12.04 only; version 14.04 only; version 15.10 only; version 16.04 only
- Citrix Xenserver: up to and including 7.0
- Debian Debian Linux: version 8.0 only
- HP Helion Openstack: version 2.0.0 only; version 2.1.0 only; version 2.1.2 only; version 2.1.4 only
- Oracle Linux: version 5 only; version 6 only; version 7 only
- Oracle Vm Server: version 3.2 only; version 3.3 only; version 3.4 only
- Qemu Qemu: up to and including 2.5.1; version 2.6.0 only
- Red Hat Enterprise Linux Desktop: version 6.0 only; version 7.0 only
- Red Hat Enterprise Linux Server: version 6.0 only; version 7.0 only
- Red Hat Enterprise Linux Server Aus: version 7.2 only; version 7.3 only; version 7.4 only; version 7.6 only
- Red Hat Enterprise Linux Server Eus: version 7.2 only; version 7.3 only; version 7.4 only; version 7.5 only; version 7.6 only; version 7.7 only
- Red Hat Enterprise Linux Server Tus: version 7.2 only; version 7.3 only; version 7.6 only; version 7.7 only
- Red Hat Enterprise Linux Workstation: version 6.0 only; version 7.0 only
- Red Hat Openstack: version 5.0 only; version 6.0 only; version 7.0 only; version 8 only
- Red Hat Virtualization: version 3.0 only
Published 2016-05-11. Last modified 2026-06-17.