An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because TLB flushes do not always occur after IOMMU mapping changes.
References
Link | Resource |
---|---|
https://xenbits.xen.org/xsa/advisory-275.html | Patch Vendor Advisory |
http://www.securityfocus.com/bid/106182 | Third Party Advisory VDB Entry |
https://support.citrix.com/article/CTX239432 | Third Party Advisory |
https://www.debian.org/security/2019/dsa-4369 | Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UXC6BME7SXJI2ZIATNXCAH7RGPI4UKTT/ | |
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00072.html | |
https://lists.debian.org/debian-lts-announce/2019/10/msg00008.html |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Information
Published : 2018-12-07 20:29
Updated : 2019-10-02 17:03
NVD link : CVE-2018-19961
Mitre link : CVE-2018-19961
JSON object : View
CWE
CWE-459
Incomplete Cleanup
Products Affected
debian
- debian_linux
citrix
- xenserver
xen
- xen