Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-19966

An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS users to cause a denial of service (host OS crash) or possibly gain host OS privileges because of an interpretation conflict for a union data structure associated with shadow paging. NOTE: this issue exists because of an incorrect fix for CVE-2017-15595.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 22.5%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 7.2
References
Products affected by CVE-2018-19966
  • Debian » Debian Linux » Version: 9.0
    cpe:2.3:o:debian:debian_linux:9.0
  • Xen » Xen » Version: 4.11.0
    cpe:2.3:o:xen:xen:4.11.0
  • Xen » Xen » Version: 4.11.1
    cpe:2.3:o:xen:xen:4.11.1


Contact Us

Shodan ® - All rights reserved