ZeroHour

CVE-2018-19961

CVSS 3.0
7.8 high
EPSS
<1%p34
Published
()
Modified
Description

An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because TLB flushes do not always occur after IOMMU mapping changes.

Vendors
xendebiancitrix
Products
xen, debian linux, xenserver
Weakness
CWE-459
Vector
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.