Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-1050

Опубликовано: 29 мар. 2022
Источник: debian
EPSS Низкий

Описание

A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device. This flaw allows a crafted guest driver to execute HW commands when shared buffers are not yet allocated, potentially leading to a use-after-free condition.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
qemufixed1:7.1+dfsg-2package
qemufixed1:5.2+dfsg-11+deb11u3bullseyepackage
qemunot-affectedstretchpackage

Примечания

  • https://gitlab.com/qemu-project/qemu/-/commit/31c4b6fb0293e359f9ef8a61892667e76eea4c99 (master, after v7.2.0)

  • PVRDMA support not enabled in the binary packages until 1:3.1+dfsg-3, disabled again in 1:3.1+dfsg-4 until 1:4.1-1

  • 1:5.2+dfsg-11+deb11u3 changelog incorrectly lists CVE-2023-1544 as fixed instead of CVE-2022-1050.

EPSS

Процентиль: 5%
0.00026
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 3 лет назад

A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device. This flaw allows a crafted guest driver to execute HW commands when shared buffers are not yet allocated, potentially leading to a use-after-free condition.

CVSS3: 8.2
redhat
больше 3 лет назад

A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device. This flaw allows a crafted guest driver to execute HW commands when shared buffers are not yet allocated, potentially leading to a use-after-free condition.

CVSS3: 8.8
nvd
больше 3 лет назад

A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device. This flaw allows a crafted guest driver to execute HW commands when shared buffers are not yet allocated, potentially leading to a use-after-free condition.

msrc
больше 2 лет назад

Описание отсутствует

CVSS3: 8.8
github
больше 3 лет назад

Guest driver might execute HW commands when shared buffers are not yet allocated, potentially leading to a use-after-free condition.

EPSS

Процентиль: 5%
0.00026
Низкий