ZeroHour

CVE-2016-4020

CVSS 3.1
6.5 medium
EPSS
<1%p31
Published
()
Modified
Description

The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).

Vendors
qemucanonicaldebianredhat
Products
qemu, ubuntu linux, debian linux, openstack, enterprise linux desktop, enterprise linux eus, enterprise linux server, enterprise linux server aus, enterprise linux server tus, enterprise linux workstation, virtualization
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.