Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-1711

Опубликовано: 23 янв. 2020
Источник: redhat
CVSS3: 6
EPSS Низкий

Описание

An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU versions 2.12.0 before 4.2.1 handled a response coming from an iSCSI server while checking the status of a Logical Address Block (LBA) in an iscsi_co_block_status() routine. A remote user could use this flaw to crash the QEMU process, resulting in a denial of service or potential execution of arbitrary code with privileges of the QEMU process on the host.

An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU handled a response coming from an iSCSI server while checking the status of a Logical Address Block (LBA) in an iscsi_co_block_status() routine. A remote user could use this flaw to crash the QEMU process, resulting in a denial of service or potential execution of arbitrary code with privileges of the QEMU process on the host.

Отчет

This issue affects the versions of the qemu-kvm package as shipped with Red Hat Enterprise Linux 8, Red Hat OpenStack, Red Hat Virtualization and Red Hat Enterprise Linux Advanced Virtualization 8.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5kvmNot affected
Red Hat Enterprise Linux 5xenNot affected
Red Hat Enterprise Linux 6qemu-kvmNot affected
Red Hat Enterprise Linux 7qemu-kvmNot affected
Red Hat Enterprise Linux 8 Advanced Virtualizationqemu-kvmAffected
Advanced Virtualization for RHEL 8.1.1virtFixedRHSA-2020:073105.03.2020
Advanced Virtualization for RHEL 8.1.1virt-develFixedRHSA-2020:073105.03.2020
Red Hat Enterprise Linux 7qemu-kvm-maFixedRHSA-2020:115031.03.2020
Red Hat Enterprise Linux 7.5 Extended Update Supportqemu-kvm-maFixedRHSA-2020:150521.04.2020
Red Hat Enterprise Linux 7.6 Extended Update Supportqemu-kvm-maFixedRHSA-2020:066903.03.2020

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=1794290QEMU: block: iscsi: OOB heap access via an unexpected response of iSCSI Server

EPSS

Процентиль: 70%
0.00669
Низкий

6 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.7
ubuntu
больше 5 лет назад

An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU versions 2.12.0 before 4.2.1 handled a response coming from an iSCSI server while checking the status of a Logical Address Block (LBA) in an iscsi_co_block_status() routine. A remote user could use this flaw to crash the QEMU process, resulting in a denial of service or potential execution of arbitrary code with privileges of the QEMU process on the host.

CVSS3: 7.7
nvd
больше 5 лет назад

An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU versions 2.12.0 before 4.2.1 handled a response coming from an iSCSI server while checking the status of a Logical Address Block (LBA) in an iscsi_co_block_status() routine. A remote user could use this flaw to crash the QEMU process, resulting in a denial of service or potential execution of arbitrary code with privileges of the QEMU process on the host.

CVSS3: 6
msrc
почти 5 лет назад

Описание отсутствует

CVSS3: 7.7
debian
больше 5 лет назад

An out-of-bounds heap buffer access flaw was found in the way the iSCS ...

CVSS3: 6
github
около 3 лет назад

An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU versions 2.x.x up to and including 2.12.0 handled a response coming from an iSCSI server while checking the status of a Logical Address Block (LBA) in an iscsi_co_block_status() routine. A remote user could use this flaw to crash the QEMU process, resulting in a denial of service or potential execution of arbitrary code with privileges of the QEMU process on the host.

EPSS

Процентиль: 70%
0.00669
Низкий

6 Medium

CVSS3