Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fw85-m9vg-m8jv

Опубликовано: 04 авг. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6

Описание

A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. The QEMU process does not validate an offset provided by the guest before computing a host heap pointer, which is used for copying data back to the guest. Arbitrary heap memory relative to an allocated buffer can be disclosed.

A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. The QEMU process does not validate an offset provided by the guest before computing a host heap pointer, which is used for copying data back to the guest. Arbitrary heap memory relative to an allocated buffer can be disclosed.

EPSS

Процентиль: 1%
0.00012
Низкий

6 Medium

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 6
ubuntu
почти 2 года назад

A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. The QEMU process does not validate an offset provided by the guest before computing a host heap pointer, which is used for copying data back to the guest. Arbitrary heap memory relative to an allocated buffer can be disclosed.

CVSS3: 6
redhat
почти 2 года назад

A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. The QEMU process does not validate an offset provided by the guest before computing a host heap pointer, which is used for copying data back to the guest. Arbitrary heap memory relative to an allocated buffer can be disclosed.

CVSS3: 6
nvd
почти 2 года назад

A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. The QEMU process does not validate an offset provided by the guest before computing a host heap pointer, which is used for copying data back to the guest. Arbitrary heap memory relative to an allocated buffer can be disclosed.

CVSS3: 6
debian
почти 2 года назад

A heap out-of-bounds memory read flaw was found in the virtual nvme de ...

CVSS3: 6.5
fstec
почти 2 года назад

Уязвимость функции nvme_fdp_events() виртуального устройства NVMe эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 1%
0.00012
Низкий

6 Medium

CVSS3

Дефекты

CWE-125