ZeroHour

CVE-2020-27671

CVSS 3.1
7.8 high
EPSS
<1%p27
Published
()
Modified
Description

An issue was discovered in Xen through 4.14.x allowing x86 HVM and PVH guest OS users to cause a denial of service (data corruption), cause a data leak, or possibly gain privileges because coalescing of per-page IOMMU TLB flushes is mishandled.

Vendors
xenopensusedebianfedoraproject
Products
xen, leap, debian linux, fedora
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.