CVE-2018-10853 PUBLISHED

A flaw was found in the way Linux kernel KVM hypervisor before 4.18 emulated instructions such as sgdt/sidt/fxsave/fxrstor. It did not check current privilege(CPL) level while emulating unprivileged instructions. An unprivileged guest user/process could use this flaw to potentially escalate privileges inside guest.

EPSS 0.03% · 8.5th percentile

Risk Scores

EPSS Score
0.03%
8.5th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSlinux-snapdragon0, 4.4.0-1077.82, 4.4.0-1078.83
Ubuntu:24.04:LTSlinux-hwe-6.116.11.0-26.26~24.04.1, 6.11.0-28.28~24.04.1, 6.11.0-29.29~24.04.1
Ubuntu:20.04:LTSlinux-raspi25.3.0-1007.8, 5.4.0-1006.6, 5.4.0-1004.4
Ubuntu:24.04:LTSlinux-lowlatency-hwe-6.116.11.0-1014.15~24.04.1, 6.11.0-1016.17~24.04.1, 6.11.0-1013.14~24.04.1
Ubuntu:24.04:LTSlinux-azure-6.116.11.0-1012.12~24.04.1, 6.11.0-1013.13~24.04.1, 6.11.0-1014.14~24.04.1
Ubuntu:22.04:LTSlinux-riscv5.15.0-1004.4, 5.13.0-1007.7+22.04.1, 5.13.0-1006.6+22.04.1
Ubuntu:24.04:LTSlinux-gcp-6.116.11.0-1013.13~24.04.1, 6.11.0-1014.14~24.04.1, 6.11.0-1015.15~24.04.1
Ubuntu:16.04:LTSlinux-hwe4.8.0-51.54~16.04.1, 4.8.0-58.63~16.04.1, 4.10.0-27.30~16.04.2
Ubuntu:18.04:LTSlinux4.15.0-12.13, 4.15.0-33.36, 4.15.0-32.35
Ubuntu:14.04:LTSlinux-aws4.4.0-1002.2, 4.4.0-1003.3, 4.4.0-1005.5
Ubuntu:20.04:LTSlinux-azure-fde5.4.0-1091.96+cvm1.1, 5.4.0-1090.95+cvm1.1, 5.4.0-1089.94+cvm1.2
Ubuntu:16.04:LTSlinux-gcp4.13.0-1017.21, 4.15.0-1014.14~16.04.1, 4.13.0-1019.23
Ubuntu:22.04:LTSlinux-realtime0, 5.15.0-1032.35
Ubuntu:16.04:LTSlinux4.4.0-87.110, 4.4.0-83.106, 4.4.0-81.104
Ubuntu:18.04:LTSlinux-azure4.15.0-1023.24, 4.15.0-1022.23, 4.15.0-1021.21
Ubuntu:20.04:LTSlinux-riscv5.4.0-40.45, 5.4.0-39.44, 5.4.0-37.42
Ubuntu:18.04:LTSlinux-raspi24.15.0-1020.22, 4.15.0-1021.23, 4.15.0-1022.24
Ubuntu:16.04:LTSlinux-raspi24.4.0-1038.45, 4.4.0-1040.47, 4.4.0-1042.49
Ubuntu:22.04:LTSlinux-intel-iot-realtime0, 5.15.0-1073.75
Ubuntu:Pro:14.04:LTSlinux3.13.0-155.205, 0, 3.11.0-12.19

…and 13 more

Timeline

References

Open in Interactive Console →