CVE-2019-12247

Severity CVSS v4.0:
Pending analysis
Type:
CWE-190 Integer Overflow or Wraparound
Publication date:
22/05/2019
Last modified:
05/08/2024

Description

QEMU 3.0.0 has an Integer Overflow because the qga/commands*.c files do not check the length of the argument list or the number of environment variables. NOTE: This has been disputed as not exploitable

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:qemu:qemu:3.0.0:*:*:*:*:*:*:*