The KVM implementation in the Linux kernel through 4.20.5 has an Information Leak.
https://github.com/torvalds/linux/commits/master/arch/x86/kvm
https://bugs.chromium.org/p/project-zero/issues/detail?id=1759
http://www.securityfocus.com/bid/106963
http://www.openwall.com/lists/oss-security/2019/02/18/2
http://packetstormsecurity.com/files/151712/KVM-kvm_inject_page_fault-Uninitialized-Memory-Leak.html
http://lists.opensuse.org/opensuse-security-announce/2019-02/msg00042.html
https://lists.debian.org/debian-lts-announce/2019/03/msg00034.html
https://lists.debian.org/debian-lts-announce/2019/04/msg00004.html
https://usn.ubuntu.com/3933-2/
https://usn.ubuntu.com/3932-2/
https://usn.ubuntu.com/3932-1/
https://usn.ubuntu.com/3931-2/
https://usn.ubuntu.com/3931-1/
https://usn.ubuntu.com/3930-2/
https://usn.ubuntu.com/3930-1/
https://security.netapp.com/advisory/ntap-20190404-0002/
https://usn.ubuntu.com/3933-1/
https://lists.debian.org/debian-lts-announce/2019/05/msg00002.html
https://access.redhat.com/errata/RHSA-2019:2043
https://access.redhat.com/errata/RHSA-2019:2029
Source: MITRE
Published: 2019-03-21
Updated: 2023-02-28
Type: NVD-CWE-noinfo
Base Score: 2.1
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N
Impact Score: 2.9
Exploitability Score: 3.9
Severity: LOW
Base Score: 5.5
Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Impact Score: 3.6
Exploitability Score: 1.8
Severity: MEDIUM