Lucene search

K
cvelistRedhatCVELIST:CVE-2017-12188
HistoryOct 11, 2017 - 3:00 p.m.

CVE-2017-12188

2017-10-1115:00:00
CWE-121
redhat
www.cve.org
2

7.8 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.7%

arch/x86/kvm/mmu.c in the Linux kernel through 4.13.5, when nested virtualisation is used, does not properly traverse guest pagetable entries to resolve a guest virtual address, which allows L1 guest OS users to execute arbitrary code on the host OS or cause a denial of service (incorrect index during page walking, and host OS crash), aka an “MMU potential stack buffer overrun.”

CNA Affected

[
  {
    "product": "Linux kernel",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Linux kernel"
      }
    ]
  }
]

7.8 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.7%