AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2019-3887

MEDIUM · CVSS 5.6 EPSS 0.36%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2019-04-09 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2019-3887
Severity
MEDIUM
CVSS
5.6
EPSS
0.36%

Original NVD Description

A flaw was found in the way KVM hypervisor handled x2APIC Machine Specific Rregister (MSR) access with nested(=1) virtualization enabled. In that, L1 guest could access L0's APIC register values via L2 guest, when 'virtualize x2APIC mode' is enabled. A guest could use this flaw to potentially crash the host kernel resulting in DoS issue. Kernel versions from 4.16 and newer are vulnerable to this issue.