MEDIUM · 6.5

CVE-2018-12207

Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to potentially enable denial of service of the host sy...

Vulnerability Description

Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to potentially enable denial of service of the host system via local access.

CVSS Score

6.5

MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
CHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
IntelCore I3-10110U Firmware-
IntelCore I3-10110U-
IntelCore I3-10110Y Firmware-
IntelCore I3-10110Y-
IntelCore I3-1005G1 Firmware-
IntelCore I3-1005G1-
IntelCore I3-9300T Firmware-
IntelCore I3-9300T-
IntelCore I3-9300 Firmware-
IntelCore I3-9300-
IntelCore I3-9100 Firmware-
IntelCore I3-9100-
IntelCore I3-9100T Firmware-
IntelCore I3-9100T-
IntelCore I3-9350K Firmware-
IntelCore I3-9350K-
IntelCore I3-9320 Firmware-
IntelCore I3-9320-
IntelCore I3-8145U Firmware-
IntelCore I3-8145U-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2018-12207?

CVE-2018-12207 is a vulnerability with a CVSS score of 6.5 (MEDIUM). Improper invalidation for page table updates by a virtual guest operating system for multiple Intel(R) Processors may allow an authenticated user to potentially enable denial of service of the host sy...

How severe is CVE-2018-12207?

CVE-2018-12207 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2018-12207?

Check the references section above for vendor advisories and patch information. Affected products include: Intel Core I3-10110U Firmware, Intel Core I3-10110U, Intel Core I3-10110Y Firmware, Intel Core I3-10110Y, Intel Core I3-1005G1 Firmware.