CVE-2018-18883: Xen
High severity, CVSS 8.8. EPSS: 0.5% chance of exploitation in the next 30 days.
An issue was discovered in Xen 4.9.x through 4.11.x, on Intel x86 platforms, allowing x86 HVM and PVH guests to cause a host OS denial of service (NULL pointer dereference) or possibly have unspecified other impact because nested VT-x is not properly restricted.
Affected products
- Xen Xen: from 4.9.0, up to and including 4.11.0
Published 2018-11-01. Last modified 2026-06-17.