FlawAtlas
Search the atlas
UBUNTU-CVE-2018-14678 High

UBUNTU-CVE-2018-14678

An issue was discovered in the Linux kernel through 4.17.11, as used in Xen through 4.11.x. The xen_failsafe_callback entry point in arch/x86/entry/entry_64.S does not properly maintain RBX, which allows local users to cause a denial of service (uninitialized memory usage and system crash). Within Xen, 64-bit x86 PV Linux guest OS users can trigger a guest OS crash or possibly gain privileges.

Exploit probability Not scored
Published July 28, 2018
Required by Not available
Last source change April 22, 2026

02 / AFFECTED SOFTWARE

Affected packages

Ubuntu:14.04:LTS linux-azure

9 explicit affected versions

Ubuntu:16.04:LTS linux-aws-hwe

4 explicit affected versions

Ubuntu:16.04:LTS linux-azure

32 explicit affected versions

Ubuntu:16.04:LTS linux-gcp

27 explicit affected versions

Ubuntu:16.04:LTS linux-hwe

47 explicit affected versions

Ubuntu:16.04:LTS linux-oracle

3 explicit affected versions

Ubuntu:18.04:LTS linux

26 explicit affected versions

Ubuntu:18.04:LTS linux-aws

21 explicit affected versions

Ubuntu:18.04:LTS linux-azure

21 explicit affected versions

Ubuntu:18.04:LTS linux-gcp

19 explicit affected versions

Ubuntu:18.04:LTS linux-kvm

20 explicit affected versions

Ubuntu:18.04:LTS linux-oem

17 explicit affected versions

Ubuntu:18.04:LTS linux-oracle

3 explicit affected versions

Ubuntu:18.04:LTS linux-raspi2

22 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities UBUNTU-CVE-2018-14678

An issue was discovered in the Linux kernel through 4.17.11, as used in Xen through 4.11.x. The xen_failsafe_callback entry point in arch/x86/entry/entry_64.S does not properly maintain RBX, which allows local users to cause a denial of service (uninitialized memory usage and system crash). Within Xen, 64-bit x86 PV Linux guest OS users can trigger a guest OS crash or possibly gain privileges.

View original source

05 / REFERENCES

Further evidence