VDB
AWS-2018-014
AWS-2018-014
PUBLISHED
2018/05/08 10:00AM PDT CVE Identifiers: CVE-2018-8897 The Xen Security Team has released Xen Security Advisories 260 , 261 and 262 regarding the Xen hypervisor. AWS customers' data and instances are not affected by this issue, and no customer action is required.
Exploit Intelligence
- Implements the POP/MOV SS (CVE-2018-8897) vulnerability by leveraging SYSCALL to perform a local privilege escalation (LPE). (github-poc)
- Arbitrary code execution with kernel privileges using CVE-2018-8897. (github-poc)
- The exploitation for CVE-2018-8897 (github-poc)
- Implements the POP/MOV SS (CVE-2018-8897) vulnerability by bugchecking the machine (local DoS). (github-poc)
- CVE-2018-8897.yara (github-yara)
Timeline
- Sep 26, 2019 CVE Published
- Feb 13, 2025 PoC Published
- May 6, 2026 Security Advisory