Lucene search

K
f5F5F5:K26301924
HistoryFeb 15, 2019 - 12:00 a.m.

K26301924 : Linux kernel vulnerability CVE-2018-15594

2019-02-1500:00:00
my.f5.com
112

6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

28.2%

Security Advisory Description

arch/x86/kernel/paravirt.c in the Linux kernel before 4.18.1 mishandles certain indirect calls, which makes it easier for attackers to conduct Spectre-v2 attacks against paravirtual guests. (CVE-2018-15594)

Impact

Traffix SDC

When this vulnerability is exploited, an attacker with local access to the system can obtain sensitive information from the system memory for a paravirtual guest.

BIG-IP, BIG-IQ, F5 iWorkflow, and Enterprise Manager

There is no impact; these F5 products are not affected by this vulnerability.