Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-15859

Опубликовано: 21 июл. 2020
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 2.1
CVSS3: 3.3

Описание

QEMU 4.2.0 has a use-after-free in hw/net/e1000e_core.c because a guest OS user can trigger an e1000e packet with the data's address set to the e1000e's MMIO address.

РелизСтатусПримечание
bionic

released

1:2.11+dfsg-1ubuntu7.35
devel

not-affected

1:5.2+dfsg-3ubuntu1
esm-infra-legacy/trusty

needed

esm-infra/bionic

not-affected

1:2.11+dfsg-1ubuntu7.35
esm-infra/focal

not-affected

1:4.2-3ubuntu6.12
esm-infra/xenial

not-affected

1:2.5+dfsg-5ubuntu10.49
focal

released

1:4.2-3ubuntu6.12
groovy

released

1:5.0-5ubuntu9.4
hirsute

not-affected

1:5.2+dfsg-3ubuntu1
impish

not-affected

1:5.2+dfsg-3ubuntu1

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

hirsute

DNE

impish

DNE

jammy

DNE

kinetic

DNE

Показывать по

EPSS

Процентиль: 5%
0.00026
Низкий

2.1 Low

CVSS2

3.3 Low

CVSS3

Связанные уязвимости

CVSS3: 3.8
redhat
почти 5 лет назад

QEMU 4.2.0 has a use-after-free in hw/net/e1000e_core.c because a guest OS user can trigger an e1000e packet with the data's address set to the e1000e's MMIO address.

CVSS3: 3.3
nvd
почти 5 лет назад

QEMU 4.2.0 has a use-after-free in hw/net/e1000e_core.c because a guest OS user can trigger an e1000e packet with the data's address set to the e1000e's MMIO address.

CVSS3: 3.3
msrc
почти 5 лет назад

Описание отсутствует

CVSS3: 3.3
debian
почти 5 лет назад

QEMU 4.2.0 has a use-after-free in hw/net/e1000e_core.c because a gues ...

CVSS3: 3.3
github
около 3 лет назад

QEMU 4.2.0 has a use-after-free in hw/net/e1000e_core.c because a guest OS user can trigger an e1000e packet with the data's address set to the e1000e's MMIO address.

EPSS

Процентиль: 5%
0.00026
Низкий

2.1 Low

CVSS2

3.3 Low

CVSS3