tcp_emu in slirp/tcp_subr.c (aka slirp/src/tcp_subr.c) in QEMU 3.0.0 uses uninitialized data in an snprintf call, leading to Information disclosure.
References
Configurations
History
21 Nov 2024, 04:52
Type | Values Removed | Values Added |
---|---|---|
References | () https://access.redhat.com/errata/RHSA-2019:1650 - | |
References | () https://access.redhat.com/errata/RHSA-2019:2078 - | |
References | () https://access.redhat.com/errata/RHSA-2019:2425 - | |
References | () https://access.redhat.com/errata/RHSA-2019:2553 - | |
References | () https://access.redhat.com/errata/RHSA-2019:3345 - | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RVDHJB2QKXNDU7OFXIHIL5O5VN5QCSZL/ - | |
References | () https://lists.gnu.org/archive/html/qemu-devel/2019-03/msg00400.html - Patch, Third Party Advisory |
07 Nov 2023, 03:13
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2019-06-03 21:29
Updated : 2024-11-21 04:52
NVD link : CVE-2019-9824
Mitre link : CVE-2019-9824
CVE.ORG link : CVE-2019-9824
JSON object : View
Products Affected
qemu
- qemu
CWE
CWE-908
Use of Uninitialized Resource