CVE-2018-18883

An issue was discovered in Xen 4.9.x through 4.11.x, on Intel x86 platforms, allowing x86 HVM and PVH guests to cause a host OS denial of service (NULL pointer dereference) or possibly have unspecified other impact because nested VT-x is not properly restricted.
References
Link Resource
http://www.securityfocus.com/bid/105817 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1042021 Third Party Advisory VDB Entry
https://xenbits.xen.org/xsa/advisory-278.html Mitigation Patch Vendor Advisory
http://www.securityfocus.com/bid/105817 Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1042021 Third Party Advisory VDB Entry
https://xenbits.xen.org/xsa/advisory-278.html Mitigation Patch Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:o:xen:xen:*:*:*:*:*:*:*:*

History

21 Nov 2024, 03:56

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/105817 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/105817 - Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1042021 - Third Party Advisory, VDB Entry () http://www.securitytracker.com/id/1042021 - Third Party Advisory, VDB Entry
References () https://xenbits.xen.org/xsa/advisory-278.html - Mitigation, Patch, Vendor Advisory () https://xenbits.xen.org/xsa/advisory-278.html - Mitigation, Patch, Vendor Advisory

Information

Published : 2018-11-01 00:29

Updated : 2024-11-21 03:56


NVD link : CVE-2018-18883

Mitre link : CVE-2018-18883

CVE.ORG link : CVE-2018-18883


JSON object : View

Products Affected

xen

  • xen
CWE
CWE-476

NULL Pointer Dereference