Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2018-1087

25
FAUCET Score

CVE-2018-1087 is a high-severity vulnerability affecting the Linux kernel's KVM hypervisor in versions prior to 4.16, 4.16-rc7, 4.17-rc1, 4.17-rc2, and 4.17-rc3, impacting Canonical, Debian, Linux, and Red Hat distributions. The flaw stems from improper handling of exceptions delivered after a stack switch operation, specifically with Mov SS or Pop SS instructions. This allows an unprivileged KVM guest user to crash the guest or potentially escalate privileges within it. While no active exploits or public exploit code are known, the vulnerability has garnered some community discussion and media coverage, indicating awareness of its potential impact.

Impacted Technologies

VendorProductVersion(s)CPE
4.16CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:4.16:*:*:*:*:*:*:*
4.16CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:4.16:rc7:*:*:*:*:*:*
4.17CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:4.17:rc1:*:*:*:*:*:*
4.17CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:4.17:rc2:*:*:*:*:*:*
4.17CPE matchmatch criteria
cpe:2.3:o:linux:linux_kernel:4.17:rc3:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

8.0HIGH

CVSS:3.0/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
2.1
Impact Score
5.9
CvssVersion
3.0

Exploit Intelligence

EPSS Score
0.77%
Probability of exploitation in next 30 days
EPSS Percentile
51.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-24
Model: v2026.06.15
This CVE's current EPSS score of 0.0077 is in the 88th percentile among its peer group of 16,974 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.2 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (16)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-rt-0:3.10.0-862.2.3.rt56.806.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: kernel-0:3.10.0-862.2.3.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.2 Advanced Update SupportFixed in: kernel-0:3.10.0-327.66.3.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.2 Telco Extended Update SupportFixed in: kernel-0:3.10.0-327.66.3.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.2 Update Services for SAP SolutionsFixed in: kernel-0:3.10.0-327.66.3.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.3 Extended Update SupportFixed in: kernel-0:3.10.0-514.48.3.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7.4 Extended Update SupportFixed in: kernel-0:3.10.0-693.25.4.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Virtualization 4 for Red Hat Enterprise Linux 7Fixed in: imgbased-0:1.0.16-0.1.el7ev
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Virtualization 4 for Red Hat Enterprise Linux 7Fixed in: ovirt-node-ng-0:4.2.0-0.20170814.0.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Virtualization 4 for Red Hat Enterprise Linux 7Fixed in: redhat-release-virtualization-host-0:4.2-3.0.el7
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Virtualization 4 for Red Hat Enterprise Linux 7Fixed in: redhat-virtualization-host-0:4.2-20180508.0
View patch
redhatpatch availablevia redhat_api
Product: RHEV 3.X Hypervisor and Agents for RHEL-6Fixed in: rhev-hypervisor7-0:7.3-20180521.1.el6ev
View patch
redhatpatch availablevia redhat_api
Product: RHEV 3.X Hypervisor and Agents for RHEL-7 ELSFixed in: redhat-virtualization-host-0:3.6-20180521.0
View patch
redhatpatch availablevia redhat_api
Product: RHEV 3.X Hypervisor and Agents for RHEL-7 ELSFixed in: rhev-hypervisor7-0:7.3-20180521.1.el7ev
View patch
redhatno patchvia redhat_api
Product: Red Hat Enterprise Virtualization 3Fixed in: rhev-hypervisor-ng
redhatno patchvia redhat_api
Product: Red Hat Virtualization 4Fixed in: rhev-hypervisor-ng

Vendor Advisories (1)

redhatCVE-2018-1087Important

Kernel: KVM: error in exception handling leads to wrong debug stack value

May 8, 2018

References

access.redhat.com / errata/RHSA-2018:1318
Third Party Advisory
access.redhat.com / errata/RHSA-2018:1345
Third Party Advisory
access.redhat.com / errata/RHSA-2018:1347
Third Party Advisory
access.redhat.com / errata/RHSA-2018:1348
Third Party Advisory
access.redhat.com / errata/RHSA-2018:1355
Third Party Advisory
access.redhat.com / errata/RHSA-2018:1524
Third Party Advisory
access.redhat.com / security/vulnerabilities/pop_ss
Third Party Advisory
bugzilla.redhat.com / show_bug.cgi
Issue Tracking
usn.ubuntu.com / 3641-1
Third Party Advisory
usn.ubuntu.com / 3641-2
Third Party Advisory
debian.org / security/2018/dsa-4196
Third Party Advisory
openwall.com / lists/oss-security/2018/05/08/5
Mailing List
securityfocus.com / bid/104127
Third Party AdvisoryVDB Entry
securitytracker.com / id/1040862
Third Party AdvisoryVDB Entry