VYPR
Low severity3.8NVD Advisory· Published Sep 24, 2019· Updated Jun 17, 2026

CVE-2019-12068

CVE-2019-12068

Description

In QEMU 1:4.1-1, 1:2.1+dfsg-12+deb8u6, 1:2.8+dfsg-6+deb9u8, 1:3.1+dfsg-8~deb10u1, 1:3.1+dfsg-8+deb10u2, and 1:2.1+dfsg-12+deb8u12 (fixed), when executing script in lsi_execute_script(), the LSI scsi adapter emulator advances 's->dsp' index to read next opcode. This can lead to an infinite loop if the next opcode is empty. Move the existing loop exit after 10k iterations so that it covers no-op opcodes as well.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

59

Patches

Vulnerability mechanics

References

10

News mentions

0

No linked articles in our index yet.