CVE-2018-19962

HIGH7.8EPSS 0.18%
Published: 12/8/2018Modified: 12/3/2025
Also known as:ALPINE-CVE-2018-19962DEBIAN-CVE-2018-19962

Description

An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because small IOMMU mappings are unsafely combined into larger ones.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.8CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H

References (2)