UBUNTU-CVE-2018-10901

Source
https://ubuntu.com/security/CVE-2018-10901
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2018/UBUNTU-CVE-2018-10901.json
JSON Data
https://api.test.osv.dev/v1/vulns/UBUNTU-CVE-2018-10901
Upstream
Published
2018-07-26T17:29:00Z
Modified
2025-10-24T04:47:01Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
  • 7.8 (High) CVSS_V3 - CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
  • 7.8 (High) CVSS_V3 - CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
  • Ubuntu - high
Summary
[none]
Details

A flaw was found in Linux kernel's KVM virtualization subsystem. The VMX code does not restore the GDT.LIMIT to the previous host value, but instead sets it to 64KB. With a corrupted GDT limit a host's userspace code has an ability to place malicious entries in the GDT, particularly to the per-cpu variables. An attacker can use this to escalate their privileges.

References

Affected packages

Ubuntu:18.04:LTS / linux-azure-edge

Package

Name
linux-azure-edge
Purl
pkg:deb/ubuntu/linux-azure-edge@5.0.0-1012.12~18.04.2?arch=source&distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

4.*
4.18.0-1006.6~18.04.1
4.18.0-1007.7~18.04.1
4.18.0-1008.8~18.04.1
5.*
5.0.0-1012.12~18.04.2

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.0.0-1012.12~18.04.2",
            "binary_name": "linux-azure-edge-cloud-tools-5.0.0-1012"
        },
        {
            "binary_version": "5.0.0-1012.12~18.04.2",
            "binary_name": "linux-azure-edge-tools-5.0.0-1012"
        },
        {
            "binary_version": "5.0.0-1012.12~18.04.2",
            "binary_name": "linux-azure-headers-5.0.0-1012"
        },
        {
            "binary_version": "5.0.0-1012.12~18.04.2",
            "binary_name": "linux-buildinfo-5.0.0-1012-azure"
        },
        {
            "binary_version": "5.0.0-1012.12~18.04.2",
            "binary_name": "linux-cloud-tools-5.0.0-1012-azure"
        },
        {
            "binary_version": "5.0.0-1012.12~18.04.2",
            "binary_name": "linux-headers-5.0.0-1012-azure"
        },
        {
            "binary_version": "5.0.0-1012.12~18.04.2",
            "binary_name": "linux-image-unsigned-5.0.0-1012-azure"
        },
        {
            "binary_version": "5.0.0-1012.12~18.04.2",
            "binary_name": "linux-modules-5.0.0-1012-azure"
        },
        {
            "binary_version": "5.0.0-1012.12~18.04.2",
            "binary_name": "linux-modules-extra-5.0.0-1012-azure"
        },
        {
            "binary_version": "5.0.0-1012.12~18.04.2",
            "binary_name": "linux-tools-5.0.0-1012-azure"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2018/UBUNTU-CVE-2018-10901.json"