Oval Definition:oval:com.ubuntu.disco:def:201972220000000
Revision Date:2019-03-21Version:1
Title:CVE-2019-7222 on Ubuntu 19.04 (disco) - medium.
Description:The KVM implementation in the Linux kernel through 4.20.5 has an Information Leak. Felix Wilhelm discovered that an information leak vulnerability existed in the KVM subsystem of the Linux kernel, when nested virtualization is used. A local attacker could use this to expose sensitive information (host system memory to a guest VM).
Family:unixClass:vulnerability
Status:Reference(s):CVE-2019-7222
Platform(s):Ubuntu 19.04
Product(s):
Definition Synopsis
  • Ubuntu 19.04 (disco) is installed.
  • AND Package Information
  • linux package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-7.8').
  • OR linux-aws package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1001.1').
  • OR linux-azure package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1001.1').
  • OR linux-gcp package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1001.1').
  • OR linux-kvm package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1001.1').
  • OR linux-meta package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-7.8').
  • OR linux-meta-aws package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1001.1').
  • OR linux-meta-azure package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1001.1').
  • OR linux-meta-gcp package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1001.1').
  • OR linux-meta-kvm package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1001.1').
  • OR linux-meta-oem package in disco, is related to the CVE in some way and has been fixed (note: '4.15.0-1035.40').
  • OR linux-meta-oracle package in disco, is related to the CVE in some way and has been fixed (note: '4.15.0-1010.12').
  • OR linux-meta-raspi2 package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1004.4').
  • OR linux-oem package in disco, is related to the CVE in some way and has been fixed (note: '4.15.0-1035.40').
  • OR linux-oracle package in disco, is related to the CVE in some way and has been fixed (note: '4.15.0-1010.12').
  • OR linux-raspi2 package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1004.4').
  • OR linux-signed package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-7.8').
  • OR linux-signed-azure package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1001.1').
  • OR linux-signed-gcp package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1001.1').
  • OR linux-signed-oem package in disco, is related to the CVE in some way and has been fixed (note: '4.15.0-1035.40').
  • OR linux-signed-oracle package in disco, is related to the CVE in some way and has been fixed (note: '4.15.0-1010.12').
  • OR linux-snapdragon package in disco, is related to the CVE in some way and has been fixed (note: '5.0.0-1010.10').
  • BACK