QEMU CVE-2019-8934 Local Information Disclosure Vulnerability
BID:107115
CVE-2019-8934 |Info
QEMU CVE-2019-8934 Local Information Disclosure Vulnerability
| Bugtraq ID: | 107115 |
| Class: | Design Error |
| CVE: |
CVE-2019-8934 |
| Remote: | No |
| Local: | Yes |
| Published: | Feb 21 2019 12:00AM |
| Updated: | Feb 21 2019 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
QEMU QEMU 0 |
| Not Vulnerable: | |
Discussion
QEMU CVE-2019-8934 Local Information Disclosure Vulnerability
QEMU is prone to a local information-disclosure vulnerability.
An attacker can exploit this issue to obtain sensitive information. Failed exploit attempts will result in a denial-of-service condition.
QEMU is prone to a local information-disclosure vulnerability.
An attacker can exploit this issue to obtain sensitive information. Failed exploit attempts will result in a denial-of-service condition.
Exploit / POC
QEMU CVE-2019-8934 Local Information Disclosure Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
QEMU CVE-2019-8934 Local Information Disclosure Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
QEMU CVE-2019-8934 Local Information Disclosure Vulnerability
References:
References:
- CVE-2019-8934 QEMU: ppc64: sPAPR emulator leaks the host hardware identity (Seclists.org)
- QEMU Homepage (QEMU)
- Re: [Qemu-devel] [PATCH v4] ppc: add host-serial and host-model machine (gnu.org)
- Red Hat Bugzilla �?? Bug 1668022 (Red Hat Bugzilla)
- CVE-2019-8934 QEMU: ppc64: sPAPR emulator leaks the host hardware identity (Redhat)