CVE-2018-19963
published 2018-12-08CVE-2018-19963: An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denial of service (host OS crash) or possibly gain host OS privileges because x86…
PriorityP433high7.8CVSS 3.0
AVLACHPRLUINSCCHIHAH
EPSS
0.36%
28.7th percentile
An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denial of service (host OS crash) or possibly gain host OS privileges because x86 IOREQ server resource accounting (for external emulators) was mishandled.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | xen | < xen 4.11.1-1 (bookworm) | xen 4.11.1-1 (bookworm) |
| xen | xen | — | — |
| xen | xen | >= 0 < 4.11.1-1 | 4.11.1-1 |
| xen | xen | >= 0 < 4.11.1-1 | 4.11.1-1 |
| xen | xen | >= 0 < 4.11.1-1 | 4.11.1-1 |
| xen | xen | >= 0 < 4.11.1-1 | 4.11.1-1 |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
xen: resource accounting issues in x86 IOREQ server handling (XSA-276)
vendor_redhat·2018-11-20·CVSS 7.8
CVE-2018-19963 [HIGH] CWE-119 xen: resource accounting issues in x86 IOREQ server handling (XSA-276)
xen: resource accounting issues in x86 IOREQ server handling (XSA-276)
An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denial of service (host OS crash) or possibly gain host OS privileges because x86 IOREQ server resource accounting (for external emulators) was mishandled.
Package: xen (Red Hat Enterprise Linux 5) - Will not fix
Debian
CVE-2018-19963: xen - An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denia...
vendor_debian·2018·CVSS 7.8
CVE-2018-19963 [HIGH] CVE-2018-19963: xen - An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denia...
An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denial of service (host OS crash) or possibly gain host OS privileges because x86 IOREQ server resource accounting (for external emulators) was mishandled.
Scope: local
bookworm: resolved (fixed in 4.11.1-1)
bullseye: resolved (fixed in 4.11.1-1)
forky: resolved (fixed in 4.11.1-1)
sid: resolved (fixed in 4.11.1-1)
trixie: resolved (fixed in 4.11.1-1)
GHSA
GHSA-fxvq-f6w2-c6gp: An issue was discovered in Xen 4
ghsa_unreviewed·2022-05-13
CVE-2018-19963 [HIGH] CWE-617 GHSA-fxvq-f6w2-c6gp: An issue was discovered in Xen 4
An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denial of service (host OS crash) or possibly gain host OS privileges because x86 IOREQ server resource accounting (for external emulators) was mishandled.
OSV
CVE-2018-19963: An issue was discovered in Xen 4
osv·2018-12-08·CVSS 7.8
CVE-2018-19963 [HIGH] CVE-2018-19963: An issue was discovered in Xen 4
An issue was discovered in Xen 4.11 allowing HVM guest OS users to cause a denial of service (host OS crash) or possibly gain host OS privileges because x86 IOREQ server resource accounting (for external emulators) was mishandled.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-19963 CVE-2018-19964 CVE-2018-19966 xen: various flaws [fedora-all]
bugzilla·2018-11-21·CVSS 7.8
CVE-2018-19963 [HIGH] CVE-2018-19963 CVE-2018-19964 CVE-2018-19966 xen: various flaws [fedora-all]
CVE-2018-19963 CVE-2018-19964 CVE-2018-19966 xen: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions
Bugzilla
CVE-2018-19963 xsa276 xen: resource accounting issues in x86 IOREQ server handling (XSA-276)
bugzilla·2018-11-21·CVSS 7.8
CVE-2018-19963 [HIGH] CVE-2018-19963 xsa276 xen: resource accounting issues in x86 IOREQ server handling (XSA-276)
CVE-2018-19963 xsa276 xen: resource accounting issues in x86 IOREQ server handling (XSA-276)
ISSUE DESCRIPTION
Allocation of pages used to communicate with external emulators did not
follow certain principles that are required for proper life cycle
management of guest exposed pages.
IMPACT
A compromised DM stubdomain may cause Xen to crash, resulting in a DoS
(Denial of Service) affecting the entire host. Privilege escalation
as well as information leaks cannot be ruled out.
VULNERABLE SYSTEMS
Only Xen 4.11 is affected by this vulnerability. Xen 4.10 and older are
not affected by this vulnerability.
Only systems running HVM guests with their devicemodels in a
stubdomain are considered vulnerable. Note that attackers also need
to exploit the devicemodel in order to have access to thi
2018-12-08
Published