The grant-table feature in Xen through 4.8.x provides false mapping information in certain cases of concurrent unmap calls, which allows backend attackers to obtain sensitive information or gain privileges, aka XSA-218 bug 1.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-10913.json"
[ { "events": [ { "introduced": "0" }, { "last_affected": "4.8.1" } ] } ]