CVE-2016-4020
—CVSS 3.1
6.5 medium
EPSS
<1%p31
Published
()
Modified
Description
The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).
- Vendors
- qemucanonicaldebianredhat
- Products
- qemu, ubuntu linux, debian linux, openstack, enterprise linux desktop, enterprise linux eus, enterprise linux server, enterprise linux server aus, enterprise linux server tus, enterprise linux workstation, virtualization
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.