Executive Summary



This Alert is flagged as TOP 25 Common Weakness Enumeration from CWE/SANS. For more information, you can read this.
Informations
Name CVE-2019-15034 First vendor Publication 2020-03-10
Vendor Cve Last vendor Modification 2020-05-28

Security-Database Scoring CVSS v3

Cvss vector : CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:H
Overall CVSS Score 5.8
Base Score 5.8 Environmental Score 5.8
impact SubScore 4.7 Temporal Score 5.8
Exploitabality Sub Score 1
 
Attack Vector Local Attack Complexity High
Privileges Required Low User Interaction None
Scope Unchanged Confidentiality Impact Low
Integrity Impact Low Availability Impact High
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:L/AC:M/Au:N/C:P/I:P/A:P)
Cvss Base Score 4.4 Attack Range Local
Cvss Impact Score 6.4 Attack Complexity Medium
Cvss Expoit Score 3.4 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

hw/display/bochs-display.c in QEMU 4.0.0 does not ensure a sufficient PCI config space allocation, leading to a buffer overflow involving the PCIe extended config space.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15034

CWE : Common Weakness Enumeration

% Id Name
100 % CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') (CWE/SANS Top 25)

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 1

Sources (Detail)

Source Url
DEBIAN https://www.debian.org/security/2020/dsa-4665
MISC https://lists.gnu.org/archive/html/qemu-devel/2019-08/msg01959.html
SUSE http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00007.html
UBUNTU https://usn.ubuntu.com/4372-1/

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
Date Informations
2024-02-02 02:03:12
  • Multiple Updates
2024-02-01 12:17:10
  • Multiple Updates
2023-09-05 12:59:07
  • Multiple Updates
2023-09-05 01:16:51
  • Multiple Updates
2023-09-02 12:58:24
  • Multiple Updates
2023-09-02 01:17:08
  • Multiple Updates
2023-08-12 13:02:18
  • Multiple Updates
2023-08-12 01:16:26
  • Multiple Updates
2023-08-11 12:56:06
  • Multiple Updates
2023-08-11 01:16:54
  • Multiple Updates
2023-08-06 12:54:27
  • Multiple Updates
2023-08-06 01:16:21
  • Multiple Updates
2023-08-04 12:54:43
  • Multiple Updates
2023-08-04 01:16:31
  • Multiple Updates
2023-07-14 12:54:42
  • Multiple Updates
2023-07-14 01:16:27
  • Multiple Updates
2023-03-29 01:56:04
  • Multiple Updates
2023-03-28 12:16:45
  • Multiple Updates
2022-10-11 12:48:51
  • Multiple Updates
2022-10-11 01:16:20
  • Multiple Updates
2021-05-04 13:28:56
  • Multiple Updates
2021-04-22 02:42:53
  • Multiple Updates
2020-05-29 05:22:43
  • Multiple Updates
2020-05-23 02:25:10
  • First insertion