CVE-2016-9384: Xen

Medium severity, CVSS 6.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Xen 4.7 allows local guest OS users to obtain sensitive host information by loading a 32-bit ELF symbol table.

Affected products

  • Xen Xen: version 4.7.0 only; version 4.7.1 only

Published 2017-02-22. Last modified 2026-06-17.