CVE-2019-8934: Opensuse Leap

Low severity, CVSS 3.3. EPSS: 0.6% chance of exploitation in the next 30 days.

hw/ppc/spapr.c in QEMU through 3.1.0 allows Information Exposure because the hypervisor shares the /proc/device-tree/system-id and /proc/device-tree/model system attributes with a guest.

Affected products

  • Opensuse Leap: version 15.0 only; version 42.3 only
  • Qemu Qemu: up to and including 3.1.0

Published 2019-03-21. Last modified 2026-06-17.