An issue was discovered in Xen through 4.14.x allowing x86 guest OS users to cause a host OS denial of service, achieve data corruption, or possibly gain privileges by exploiting a race condition that leads to a use-after-free involving 2MiB and 1GiB superpages.
| Software | From | Fixed in |
|---|---|---|
| xen / xen | 3.2.0 | 4.14.0.x |
| fedoraproject / fedora | 31 | 31.x |
| opensuse / leap | 15.1 | 15.1.x |
| opensuse / leap | 15.2 | 15.2.x |
| debian / debian_linux | 10.0 | 10.0.x |