hw/ppc/spapr.c in QEMU through 3.1.0 allows Information Exposure because the hypervisor shares the /proc/device-tree/system-id and /proc/device-tree/model system attributes with a guest.
References
Configurations
History
No history.
Information
Published : 2019-03-21 16:01
Updated : 2024-11-21 04:50
NVD link : CVE-2019-8934
Mitre link : CVE-2019-8934
CVE.ORG link : CVE-2019-8934
JSON object : View
Products Affected
qemu
- qemu
opensuse
- leap
CWE
CWE-668
Exposure of Resource to Wrong Sphere