An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because TLB flushes do not always occur after IOMMU mapping changes.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
History
21 Nov 2024, 03:58
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00072.html - | |
References | () http://www.securityfocus.com/bid/106182 - Third Party Advisory, VDB Entry | |
References | () https://lists.debian.org/debian-lts-announce/2019/10/msg00008.html - | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXC6BME7SXJI2ZIATNXCAH7RGPI4UKTT/ - | |
References | () https://support.citrix.com/article/CTX239432 - Third Party Advisory | |
References | () https://www.debian.org/security/2019/dsa-4369 - Third Party Advisory | |
References | () https://xenbits.xen.org/xsa/advisory-275.html - Patch, Vendor Advisory |
Information
Published : 2018-12-08 04:29
Updated : 2024-11-21 03:58
NVD link : CVE-2018-19961
Mitre link : CVE-2018-19961
CVE.ORG link : CVE-2018-19961
JSON object : View
Products Affected
debian
- debian_linux
xen
- xen
citrix
- xenserver
CWE
CWE-459
Incomplete Cleanup