CVE-2019-3887

Severity
5.6MEDIUM
EPSS
0.0%
top 89.00%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 9
Latest updateMay 13

Description

A flaw was found in the way KVM hypervisor handled x2APIC Machine Specific Rregister (MSR) access with nested(=1) virtualization enabled. In that, L1 guest could access L0's APIC register values via L2 guest, when 'virtualize x2APIC mode' is enabled. A guest could use this flaw to potentially crash the host kernel resulting in DoS issue. Kernel versions from 4.16 and newer are vulnerable to this issue.

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:HExploitability: 1.1 | Impact: 4.0

Affected Packages3 packages

CVEListV5the_linux_foundation/kernelfrom 4.16
Debianlinux< 4.19.37-1+3

Also affects: Fedora 29, Ubuntu Linux 18.04, 18.10, 19.04, Enterprise Linux 8.0, 8.1, 8.2, 8.4, 8

Patches

🔴Vulnerability Details

5
GHSA
GHSA-j2cm-6mgm-v7v4: A flaw was found in the way KVM hypervisor handled x2APIC Machine Specific Rregister (MSR) access with nested(=1) virtualization enabled2022-05-13
OSV
CVE-2019-3887: A flaw was found in the way KVM hypervisor handled x2APIC Machine Specific Rregister (MSR) access with nested(=1) virtualization enabled2019-04-09
CVEList
CVE-2019-3887: A flaw was found in the way KVM hypervisor handled x2APIC Machine Specific Rregister (MSR) access with nested(=1) virtualization enabled2019-04-09
Kernel
Merge tag 'for-linus' of git://git.kernel.org/pub/scm/virt/kvm/kvm2019-04-05
Kernel
KVM: x86: nVMX: close leak of L0's x2APIC MSRs (CVE-2019-3887)2019-04-01

📋Vendor Advisories

6
Ubuntu
Linux kernel vulnerabilities2019-05-14
Ubuntu
Linux kernel (HWE) vulnerabilities2019-05-14
Ubuntu
Linux kernel vulnerabilities2019-05-14
Microsoft
A flaw was found in the way KVM hypervisor handled x2APIC Machine Specific Rregister (MSR) access with nested(=1) virtualization enabled. In that L1 guest could access L0's APIC register values via L22019-04-09
Red Hat
Kernel: KVM: nVMX: guest accesses L0 MSR causes potential DoS2019-04-05

💬Community

2
Bugzilla
CVE-2019-3887 kernel: KVM: nVMX: guest accesses L0 MSR causes potential DoS [fedora-all]2019-04-08
Bugzilla
CVE-2019-3887 Kernel: KVM: nVMX: guest accesses L0 MSR causes potential DoS2019-04-02
CVE-2019-3887 (MEDIUM CVSS 5.6) | A flaw was found in the way KVM hyp | cvebase.io