Stack-based buffer overflow in hw/scsi/scsi-bus.c in QEMU, when built with SCSI-device emulation support, allows guest OS users with CAP_SYS_RAWIO permissions to cause a denial of service (instance crash) via an invalid opcode in a SCSI command descriptor block.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade qemu | Jul 30, 2024 | Apr 12, 2016 |
| Freebsd | — | Upgrade qemu-sbrunoUpgrade qemuUpgrade qemu-user-staticUpgrade qemu-devel | Dec 10, 2025 | Jan 1, 2016 |
| Gentoo Linux | — | Upgrade app-emulation/qemu. | Oct 30, 2017 | Apr 11, 2016 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jul 22, 2015 |
| Ubuntu | — | Upgrade qemu-system-x86Upgrade qemu-system-sparcUpgrade qemu-system-armUpgrade qemu-system-ppcUpgrade qemu-system-mipsUpgrade qemu-system-aarch64Upgrade qemu-system-miscUpgrade qemu-system | Nov 8, 2024 | Apr 12, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub