Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-29443

Опубликовано: 18 нояб. 2020
Источник: redhat
CVSS3: 3.9

Описание

ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of-bounds read access because a buffer index is not validated.

An out-of-bounds read-access flaw was found in the ATAPI Emulator of QEMU. This issue occurs while processing the ATAPI read command if the logical block address(LBA) is set to an invalid value. A guest user may use this flaw to crash the QEMU process on the host resulting in a denial of service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5kvmNot affected
Red Hat Enterprise Linux 5xenNot affected
Red Hat Enterprise Linux 6qemu-kvmOut of support scope
Red Hat Enterprise Linux 7qemu-kvm-maNot affected
Red Hat Enterprise Linux 8 Advanced Virtualizationvirt:8.3/qemu-kvmAffected
Advanced Virtualization for RHEL 8.3.1virtFixedRHBA-2021:063922.02.2021
Advanced Virtualization for RHEL 8.3.1virt-develFixedRHBA-2021:063922.02.2021
Red Hat Enterprise Linux 7qemu-kvmFixedRHSA-2021:232208.06.2021
Red Hat Enterprise Linux 8virt-develFixedRHSA-2021:176218.05.2021
Red Hat Enterprise Linux 8virtFixedRHSA-2021:176218.05.2021

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=1917446QEMU: ide: atapi: OOB access while processing read commands

3.9 Low

CVSS3

Связанные уязвимости

CVSS3: 3.9
ubuntu
больше 4 лет назад

ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of-bounds read access because a buffer index is not validated.

CVSS3: 3.9
nvd
больше 4 лет назад

ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of-bounds read access because a buffer index is not validated.

CVSS3: 3.9
debian
больше 4 лет назад

ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of- ...

CVSS3: 3.9
github
около 3 лет назад

ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of-bounds read access because a buffer index is not validated.

oracle-oval
около 4 лет назад

ELSA-2021-2322: qemu-kvm security update (MODERATE)

3.9 Low

CVSS3