CVE-2018-19962
Summary
| CVE | CVE-2018-19962 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-12-08 04:29:00 UTC |
| Updated | 2023-11-07 02:55:00 UTC |
| Description | An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because small IOMMU mappings are unsafely combined into larger ones. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| [security-announce] openSUSE-SU-2019:1226-1: important: Security update |
SUSE |
lists.opensuse.org |
|
| [SECURITY] [DLA 1949-1] xen security update |
MLIST |
lists.debian.org |
|
| Xen Multiple Privilege Escalation and Denial of Service Vulnerabilities |
BID |
www.securityfocus.com |
Third Party Advisory, VDB Entry |
| [SECURITY] Fedora 28 Update: xen-4.10.3-2.fc28 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
|
| XSA-275 - Xen Security Advisories |
MISC |
xenbits.xen.org |
Patch, Vendor Advisory |
| Debian -- Security Information -- DSA-4369-1 xen |
DEBIAN |
www.debian.org |
Third Party Advisory |
| Citrix XenServer Security Update |
CONFIRM |
support.citrix.com |
Third Party Advisory |
| [SECURITY] Fedora 28 Update: xen-4.10.3-2.fc28 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 500751 Alpine Linux Security Update for xen
- 504528 Alpine Linux Security Update for xen