Описание
iscsi_aio_ioctl_cb in block/iscsi.c in QEMU 4.1.0 has a heap-based buffer over-read that may disclose unrelated information from process memory to an attacker.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 1:2.11+dfsg-1ubuntu7.35 |
| devel | not-affected | 1:5.2+dfsg-2ubuntu1 |
| esm-infra-legacy/trusty | needed | |
| esm-infra/bionic | released | 1:2.11+dfsg-1ubuntu7.35 |
| esm-infra/focal | released | 1:4.2-3ubuntu6.12 |
| esm-infra/xenial | released | 1:2.5+dfsg-5ubuntu10.49 |
| focal | released | 1:4.2-3ubuntu6.12 |
| groovy | not-affected | 1:5.0-5ubuntu9.2 |
| hirsute | not-affected | 1:5.2+dfsg-2ubuntu1 |
| impish | not-affected | 1:5.2+dfsg-2ubuntu1 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | |
| esm-infra/focal | DNE | |
| focal | DNE | |
| groovy | DNE | |
| hirsute | DNE | |
| impish | DNE | |
| jammy | DNE | |
| kinetic | DNE |
Показывать по
EPSS
2.1 Low
CVSS2
3.8 Low
CVSS3
Связанные уязвимости
iscsi_aio_ioctl_cb in block/iscsi.c in QEMU 4.1.0 has a heap-based buffer over-read that may disclose unrelated information from process memory to an attacker.
iscsi_aio_ioctl_cb in block/iscsi.c in QEMU 4.1.0 has a heap-based buffer over-read that may disclose unrelated information from process memory to an attacker.
iscsi_aio_ioctl_cb in block/iscsi.c in QEMU 4.1.0 has a heap-based buf ...
iscsi_aio_ioctl_cb in block/iscsi.c in QEMU 4.1.0 has a heap-based buffer over-read that may disclose unrelated information from process memory to an attacker.
Уязвимость компонента block/iscsi.c эмулятора аппаратного обеспечения QEMU, связанная с чтением за допустимыми границами буфера данных, позволяющая нарушителю получить доступ к конфиденциальным данным
EPSS
2.1 Low
CVSS2
3.8 Low
CVSS3