hw/net/tulip.c in QEMU 4.2.0 has a buffer overflow during the copying of tx/rx buffers because the frame size is not validated against the r/w data length.
CVSS Details
- CVSS 3.1 Base Score: 5.6
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade qemu | Jul 30, 2024 | Apr 6, 2020 |
| Gentoo Linux | — | Upgrade app-emulation/qemu. | Jun 15, 2020 | Apr 6, 2020 |
| Oracle_linux | — | Upgrade qemu-system-aarch64Upgrade qemu-block-rbdUpgrade qemu-system-x86-coreUpgrade qemu-kvmUpgrade ivshmem-toolsUpgrade qemu-commonUpgrade qemuUpgrade qemu-block-glusterUpgrade qemu-kvm-coreUpgrade qemu-block-iscsiUpgrade qemu-system-aarch64-coreUpgrade qemu-imgUpgrade qemu-system-x86 | Feb 9, 2021 | Feb 11, 2020 |
| Suse | — | Upgrade qemu-langUpgrade qemu-block-sshUpgrade qemu-block-rbdUpgrade qemu-s390Upgrade qemu-ui-openglUpgrade qemu-hw-display-virtio-gpuUpgrade qemu-s390xUpgrade qemu-ksmUpgrade qemu-chardev-spiceUpgrade qemu-kvmUpgrade qemu-ipxeUpgrade qemu-hw-s390x-virtio-gpu-ccwUpgrade qemu-chardev-baumUpgrade qemu-ui-spice-appUpgrade qemu-audio-spiceUpgrade qemu-hw-display-qxlUpgrade qemu-block-curlUpgrade qemu-seabiosUpgrade qemu-x86Upgrade qemuUpgrade qemu-ui-gtkUpgrade qemu-vgabiosUpgrade qemu-ui-cursesUpgrade qemu-sgabiosUpgrade qemu-hw-display-virtio-gpu-pciUpgrade qemu-toolsUpgrade qemu-ppcUpgrade qemu-armUpgrade qemu-hw-usb-redirectUpgrade qemu-skibootUpgrade qemu-hw-display-virtio-vgaUpgrade qemu-audio-alsaUpgrade qemu-audio-paUpgrade qemu-microvmUpgrade qemu-guest-agentUpgrade qemu-block-iscsiUpgrade qemu-ui-spice-core | Feb 4, 2022 | Apr 6, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub