AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2017-8106

MEDIUM · CVSS 5.5 EPSS 0.33%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-04-24 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2017-8106
Severity
MEDIUM
CVSS
5.5
EPSS
0.33%
Linux

Original Filing — NVD Description

The handle_invept function in arch/x86/kvm/vmx.c in the Linux kernel 3.12 through 3.15 allows privileged KVM guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) via a single-context INVEPT instruction with a NULL EPT pointer.