CVE Database
/

CVE-2018-1087

Back to search

CVE-2018-1087

Published: May 15, 2018

Modified: Aug 5, 2024

PUBLISHED

CVSS v3.0

8.0

HIGH

Description

kernel KVM before versions kernel 4.16, kernel 4.16-rc7, kernel 4.17-rc1, kernel 4.17-rc2 and kernel 4.17-rc3 is vulnerable to a flaw in the way the Linux kernel's KVM hypervisor handled exceptions delivered after a stack switch operation via Mov SS or Pop SS instructions. During the stack switch operation, the processor did not deliver interrupts and exceptions, rather they are delivered once the first instruction after the stack switch is executed. An unprivileged KVM guest user could use this flaw to crash the guest or, potentially, escalate their privileges in the guest.

VendorProductVersions

kernel

KVM

affected
kernel 4.16
affected
kernel 4.16-rc7
affected
kernel 4.17-rc1
affected
kernel 4.17-rc2
affected
kernel 4.17-rc3

Weaknesses (CWE)

CVSS v3.0 Details

CVSS v3.0 Vector

CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector

Adjacent

Attack Complexity

Low

Privileges Required

Low

User Interaction

None

Scope

Unchanged

Confidentiality

High

Integrity

High

Availability

High

References

RHSA-2018:1347
vendor-advisory
x_refsource_REDHAT
1040862
vdb-entry
x_refsource_SECTRACK
RHSA-2018:1348
vendor-advisory
x_refsource_REDHAT
DSA-4196
vendor-advisory
x_refsource_DEBIAN
RHSA-2018:1355
vendor-advisory
x_refsource_REDHAT
RHSA-2018:1345
vendor-advisory
x_refsource_REDHAT
RHSA-2018:1318
vendor-advisory
x_refsource_REDHAT
RHSA-2018:1524
vendor-advisory
x_refsource_REDHAT
104127
vdb-entry
x_refsource_BID
USN-3641-2
vendor-advisory
x_refsource_UBUNTU
USN-3641-1
vendor-advisory
x_refsource_UBUNTU

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2018-1087 | HIGH (8) - Security Vulnerability | QwikSec