Описание
A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 1:2.11+dfsg-1ubuntu7.40 |
devel | released | 1:6.2+dfsg-2ubuntu8 |
esm-infra-legacy/trusty | needed | |
esm-infra/bionic | not-affected | 1:2.11+dfsg-1ubuntu7.40 |
esm-infra/focal | not-affected | 1:4.2-3ubuntu6.23 |
esm-infra/xenial | needed | |
focal | released | 1:4.2-3ubuntu6.23 |
groovy | ignored | end of life |
hirsute | ignored | end of life |
impish | released | 1:6.0+dfsg-2expubuntu1.3 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | DNE | |
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | DNE | |
groovy | DNE | |
hirsute | DNE | |
impish | DNE | |
jammy | DNE | |
kinetic | DNE |
Показывать по
EPSS
3.6 Low
CVSS2
6.1 Medium
CVSS3
Связанные уязвимости
A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.
A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.
A heap buffer overflow was found in the floppy disk emulator of QEMU u ...
A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.
Уязвимость функции fdctrl_transfer_handler() компонента hw/block/fdc.c эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю получить доступ к конфиденциальным данным, а также вызвать отказ в обслуживании
EPSS
3.6 Low
CVSS2
6.1 Medium
CVSS3