Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2019-3812
Description:QEMU, through version 2.10 and through version 3.1.0, is vulnerable to an out-of-bounds read of up to 128 bytes in the hw/i2c/i2c-ddc.c:i2c_ddc() function. A local attacker with permission to execute i2c commands could exploit this to read stack memory of the qemu process on the host.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2019-3812
107059
http://www.securityfocus.com/bid/107059
20190531 [SECURITY] [DSA 4454-1] qemu security update
https://seclists.org/bugtraq/2019/May/76
DSA-4454
https://www.debian.org/security/2019/dsa-4454
FEDORA-2019-0664c7724d
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/KJMTVGDLA654HNCDGLCUEIP36SNJEKK7/
FEDORA-2019-88a98ce795
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CGCFIFSIWUREEQQOZDZFBYKWZHXCWBZN/
USN-3923-1
https://usn.ubuntu.com/3923-1/
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3812
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-3812
openSUSE-SU-2019:1274
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00094.html
openSUSE-SU-2019:1405
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00040.html




© 1998-2025 E-Soft Inc. All rights reserved.