Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-4206

Опубликовано: 29 апр. 2022
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.6
CVSS3: 8.2

Описание

A flaw was found in the QXL display device emulation in QEMU. An integer overflow in the cursor_alloc() function can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. This flaw allows a malicious privileged guest user to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process.

РелизСтатусПримечание
bionic

released

1:2.11+dfsg-1ubuntu7.40
devel

released

1:6.2+dfsg-2ubuntu8
esm-infra-legacy/trusty

released

2.0.0+dfsg-2ubuntu1.47+esm6
esm-infra-legacy/xenial

released

1:2.5+dfsg-5ubuntu10.51+esm4
esm-infra/bionic

released

1:2.11+dfsg-1ubuntu7.40
esm-infra/focal

released

1:4.2-3ubuntu6.23
esm-infra/xenial

ignored

end of ESM support, was needs-triage
focal

released

1:4.2-3ubuntu6.23
impish

released

1:6.0+dfsg-2expubuntu1.3
jammy

released

1:6.2+dfsg-2ubuntu6.2

Показывать по

EPSS

Процентиль: 53%
0.00834
Низкий

4.6 Medium

CVSS2

8.2 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
больше 4 лет назад

A flaw was found in the QXL display device emulation in QEMU. An integer overflow in the cursor_alloc() function can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. This flaw allows a malicious privileged guest user to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process.

CVSS3: 8.2
nvd
около 4 лет назад

A flaw was found in the QXL display device emulation in QEMU. An integer overflow in the cursor_alloc() function can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. This flaw allows a malicious privileged guest user to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process.

CVSS3: 8.2
msrc
почти 2 года назад

Описание отсутствует

CVSS3: 8.2
debian
около 4 лет назад

A flaw was found in the QXL display device emulation in QEMU. An integ ...

CVSS3: 8.2
github
около 4 лет назад

A flaw was found in the QXL display device emulation in QEMU. An integer overflow in the cursor_alloc() function can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. This flaw allows a malicious privileged guest user to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process.

EPSS

Процентиль: 53%
0.00834
Низкий

4.6 Medium

CVSS2

8.2 High

CVSS3