CVE-2016-3044

medium
Published 2016-12-01 · Modified 2026-05-06
CVSS v3
6.5
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
CVSS v2
4.9
VIR risk
6.5

Description

The Linux kernel component in IBM PowerKVM 2.1 before 2.1.1.3-65.10 and 3.1 before 3.1.0.2 allows guest OS users to cause a denial of service (host OS infinite loop and hang) via unspecified vectors.

Predictions

Exploit likelihood
65%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2016-3044

vendor Authored 2026-05-27

Vendor advisory: psirt@us.ibm.com — http://www-01.ibm.com/support/docview.wss?uid=isg3T1023969

vendor Authored 2026-05-27

Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2016-3044.html

OS impact

OSVersionStatusFixed in
suse slesaffected
debian debianbookwormfixed4.4.6-1
debian debianbullseyefixed4.4.6-1
debian debianforkyfixed4.4.6-1
debian debiansidfixed4.4.6-1
debian debiantrixiefixed4.4.6-1

Application impact

VendorProductVersionsFixed
ibmpowerkvm2.1
ibmpowerkvm2.1.0.2
ibmpowerkvm2.1.1.0
ibmpowerkvm2.1.1.2
ibmpowerkvm2.1.1.3
ibmpowerkvm3.1
ibmpowerkvm3.1.0.1

References

CWEs

CWE-20 CWE-284

Verify integrity in audit chain (admin only). AS-IS.