Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-3507

Опубликовано: 06 мая 2021
Источник: ubuntu
Приоритет: low
CVSS2: 3.6
CVSS3: 6.1

Описание

A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.

РелизСтатусПримечание
bionic

released

1:2.11+dfsg-1ubuntu7.40
devel

released

1:6.2+dfsg-2ubuntu8
esm-infra-legacy/trusty

needed

esm-infra/bionic

released

1:2.11+dfsg-1ubuntu7.40
esm-infra/focal

released

1:4.2-3ubuntu6.23
esm-infra/xenial

needed

focal

released

1:4.2-3ubuntu6.23
groovy

ignored

end of life
hirsute

ignored

end of life
impish

released

1:6.0+dfsg-2expubuntu1.3

Показывать по

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

DNE

groovy

DNE

hirsute

DNE

impish

DNE

jammy

DNE

kinetic

DNE

Показывать по

3.6 Low

CVSS2

6.1 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.6
redhat
почти 5 лет назад

A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.

CVSS3: 6.1
nvd
почти 5 лет назад

A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.

CVSS3: 6.1
msrc
4 месяца назад

A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.

CVSS3: 6.1
debian
почти 5 лет назад

A heap buffer overflow was found in the floppy disk emulator of QEMU u ...

CVSS3: 6.1
github
больше 3 лет назад

A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.

3.6 Low

CVSS2

6.1 Medium

CVSS3