ZeroHour

CVE-2018-19962

CVSS 3.0
7.8 high
EPSS
<1%p34
Published
()
Modified
Description

An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because small IOMMU mappings are unsafely combined into larger ones.

Vendors
xendebiancitrix
Products
xen, debian linux, xenserver
Weakness
CWE-200
Vector
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.