QEMU, through version 2.10 and through version 3.1.0, is vulnerable to an out-of-bounds read of up to 128 bytes in the hw/i2c/i2c-ddc.c:i2c_ddc() function. A local attacker with permission to execute i2c commands could exploit this to read stack memory of the qemu process on the host.
CVSS Details
- CVSS 3.1 Base Score: 4.4
- CVSS 3.0 Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade qemu | May 31, 2019 | Feb 19, 2019 |
| Huawei Euleros 2_0_sp8 | — | Upgrade qemu-audio-sdlUpgrade qemu-audio-alsaUpgrade qemu-block-curlUpgrade qemu-audio-ossUpgrade qemu-system-aarch64-coreUpgrade qemu-imgUpgrade qemu-block-dmgUpgrade qemu-system-aarch64Upgrade qemu-ui-sdlUpgrade qemu-ui-cursesUpgrade qemu-block-iscsiUpgrade qemu-ui-gtkUpgrade qemu-block-nfsUpgrade qemu-commonUpgrade qemu-block-sshUpgrade qemu-audio-paUpgrade qemu-kvmUpgrade qemu-block-glusterUpgrade qemu-block-rbd | Aug 28, 2019 | Feb 19, 2019 |
| Oracle_linux | — | Upgrade qemu-imgUpgrade qemu-system-aarch64-coreUpgrade qemu-block-iscsiUpgrade ivshmem-toolsUpgrade qemu-block-glusterUpgrade qemu-system-aarch64Upgrade qemu-commonUpgrade qemuUpgrade qemu-block-rbdUpgrade qemu-kvm-coreUpgrade qemu-kvm | May 15, 2019 | Feb 18, 2019 |
| Suse | — | Upgrade qemu-audio-ossUpgrade qemu-audio-alsaUpgrade qemu-block-glusterUpgrade qemu-sgabiosUpgrade qemu-s390Upgrade qemu-x86Upgrade qemu-ui-cursesUpgrade qemu-vgabiosUpgrade qemu-block-curlUpgrade qemu-block-dmgUpgrade qemu-ppcUpgrade qemu-kvmUpgrade qemu-audio-paUpgrade qemu-ui-gtkUpgrade qemu-toolsUpgrade qemu-block-iscsiUpgrade qemu-langUpgrade qemuUpgrade qemu-ipxeUpgrade qemu-block-rbdUpgrade qemu-armUpgrade qemu-guest-agentUpgrade qemu-block-sshUpgrade qemu-ksmUpgrade qemu-seabiosUpgrade qemu-extra | Apr 17, 2019 | Feb 19, 2019 |
| Ubuntu | — | Upgrade qemu-system-s390xUpgrade qemu-systemUpgrade qemu-system-mipsUpgrade qemu-system-miscUpgrade qemu-system-x86Upgrade qemu-system-guiUpgrade qemu-system-ppcUpgrade qemu-system-sparcUpgrade qemu-system-aarch64Upgrade qemu-system-armUpgrade qemu-system-data | Apr 3, 2019 | Feb 19, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub