CVE-2018-19961
High
CVE-2018-19961
An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because TLB flushes do not always occur after IOMMU mapping changes.
Exploit probability
0.4%
Published
December 8, 2018
Required by
Not available
Last source change
March 14, 2026
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
CVE-2018-19961
View original source
An issue was discovered in Xen through 4.11.x on AMD x86 platforms, possibly allowing guest OS users to gain host OS privileges because TLB flushes do not always occur after IOMMU mapping changes.
05 / REFERENCES
Further evidence
- http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00072.html
- http://www.securityfocus.com/bid/106182
- https://lists.debian.org/debian-lts-announce/2019/10/msg00008.html
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/UXC6BME7SXJI2ZIATNXCAH7RGPI4UKTT/
- https://support.citrix.com/article/CTX239432
- https://www.debian.org/security/2019/dsa-4369
- https://xenbits.xen.org/xsa/advisory-275.html