[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2019-3812 -- qemu

ID: oval:org.secpod.oval:def:1901437Date: (C)2019-06-19   (M)2023-11-10
Class: VULNERABILITYFamily: unix




QEMU, through version 2.10 and through version 3.1.0, is vulnerable to an out-of-bounds read of up to 128 bytes in the hw/i2c/i2c-ddc.c:i2c_ddc function. A local attacker with permission to execute i2c commands could exploit this to read stack memory of the qemu process on the host.

Platform:
Ubuntu 18.04
Product:
qemu
Reference:
CVE-2019-3812
CVE    1
CVE-2019-3812
CPE    3
cpe:/o:ubuntu:ubuntu_linux:18.04
cpe:/a:qemu:qemu
cpe:/o:ubuntu:ubuntu_linux:18.10

© SecPod Technologies