A heap-based buffer overflow was found in QEMU through 5.0.0 in the SDHCI device emulation support. It could occur while doing a multi block SDMA transfer via the sdhci_sdma_transfer_multi_blocks() routine in hw/sd/sdhci.c. A guest user or process could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition, or potentially execute arbitrary code with privileges of the QEMU process on the host.
CVSS Details
- CVSS 3.1 Base Score: 6.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade qemu | Aug 22, 2024 | Jan 30, 2021 |
| Debian | — | Upgrade qemu | Apr 12, 2021 | Jan 30, 2021 |
| Suse | — | Upgrade qemu-ipxeUpgrade qemu-sgabiosUpgrade qemu-block-nfsUpgrade qemu-toolsUpgrade qemu-hw-display-virtio-gpu-pciUpgrade qemu-hw-display-virtio-gpuUpgrade qemu-hw-display-virtio-vgaUpgrade qemu-hw-s390x-virtio-gpu-ccwUpgrade qemu-vgabiosUpgrade qemu-ivshmem-toolsUpgrade qemu-ui-cursesUpgrade qemu-x86Upgrade qemu-block-glusterUpgrade qemu-hw-display-qxlUpgrade qemu-ui-openglUpgrade qemu-audio-spiceUpgrade qemuUpgrade qemu-s390xUpgrade qemu-armUpgrade qemu-block-dmgUpgrade qemu-seabiosUpgrade qemu-vhost-user-gpuUpgrade qemu-ui-gtkUpgrade qemu-audio-alsaUpgrade qemu-kvmUpgrade qemu-block-sshUpgrade qemu-ui-spice-coreUpgrade qemu-block-curlUpgrade qemu-audio-paUpgrade qemu-block-iscsiUpgrade qemu-hw-usb-redirectUpgrade qemu-microvmUpgrade qemu-chardev-baumUpgrade qemu-hw-usb-smartcardUpgrade qemu-ui-spice-appUpgrade qemu-langUpgrade qemu-extraUpgrade qemu-chardev-spiceUpgrade qemu-skibootUpgrade qemu-ppcUpgrade qemu-guest-agentUpgrade qemu-block-rbdUpgrade qemu-ksm | Jun 11, 2021 | Nov 30, 2020 |
| Ubuntu | — | Upgrade qemu-system-sparc (Ubuntu Pro)Upgrade qemu-system-sparcUpgrade qemu-system-x86Upgrade qemu-system-miscUpgrade qemu-system-aarch64Upgrade qemu-user (Ubuntu Pro)Upgrade qemu-system-mipsUpgrade qemu-system-mips (Ubuntu Pro)Upgrade qemu-system-aarch64 (Ubuntu Pro)Upgrade qemu-guest-agent (Ubuntu Pro)Upgrade qemu-utils (Ubuntu Pro)Upgrade qemu-common (Ubuntu Pro)Upgrade qemu-system-x86 (Ubuntu Pro)Upgrade qemu-kvm (Ubuntu Pro)Upgrade qemu-system-common (Ubuntu Pro)Upgrade qemu-user-static (Ubuntu Pro)Upgrade qemu-system-x86-microvmUpgrade qemu-system (Ubuntu Pro)Upgrade qemu-system-arm (Ubuntu Pro)Upgrade qemu-system-ppcUpgrade qemu-system-ppc (Ubuntu Pro)Upgrade qemu-system-s390xUpgrade qemu-system-misc (Ubuntu Pro)Upgrade qemu-system-x86-xenUpgrade qemu (Ubuntu Pro)Upgrade qemu-keymaps (Ubuntu Pro)Upgrade qemu-system-armUpgrade qemu-system | Dec 1, 2020 | Nov 30, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub