Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-3735

Опубликовано: 26 авг. 2022
Источник: ubuntu
Приоритет: low
CVSS3: 4.4

Описание

A deadlock issue was found in the AHCI controller device of QEMU. It occurs on a software reset (ahci_reset_port) while handling a host-to-device Register FIS (Frame Information Structure) packet from the guest. A privileged user inside the guest could use this flaw to hang the QEMU process on the host, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability.

РелизСтатусПримечание
bionic

ignored

end of standard support, was deferred
devel

deferred

esm-infra-legacy/trusty

deferred

esm-infra-legacy/xenial

deferred

esm-infra/bionic

deferred

esm-infra/focal

deferred

esm-infra/xenial

ignored

end of ESM support, was deferred
focal

ignored

end of standard support, was deferred
hirsute

ignored

end of life
impish

ignored

end of life

Показывать по

РелизСтатусПримечание
devel

deferred

jammy

DNE

noble

DNE

resolute

deferred

upstream

needs-triage

Показывать по

Ссылки на источники

4.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.2
redhat
около 5 лет назад

A deadlock issue was found in the AHCI controller device of QEMU. It occurs on a software reset (ahci_reset_port) while handling a host-to-device Register FIS (Frame Information Structure) packet from the guest. A privileged user inside the guest could use this flaw to hang the QEMU process on the host, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability.

CVSS3: 4.4
nvd
около 4 лет назад

A deadlock issue was found in the AHCI controller device of QEMU. It occurs on a software reset (ahci_reset_port) while handling a host-to-device Register FIS (Frame Information Structure) packet from the guest. A privileged user inside the guest could use this flaw to hang the QEMU process on the host, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability.

CVSS3: 4.4
debian
около 4 лет назад

A deadlock issue was found in the AHCI controller device of QEMU. It o ...

CVSS3: 4.4
github
около 4 лет назад

A deadlock issue was found in the AHCI controller device of QEMU. It occurs on a software reset (ahci_reset_port) while handling a host-to-device Register FIS (Frame Information Structure) packet from the guest. A privileged user inside the guest could use this flaw to hang the QEMU process on the host, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability.

4.4 Medium

CVSS3