A heap-based buffer overflow was found in QEMU through 5.0.0 in the SDHCI device emulation support. It could occur while doing a multi block SDMA transfer via the sdhci_sdma_transfer_multi_blocks() routine in hw/sd/sdhci.c. A guest user or process could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition, or potentially execute arbitrary code with privileges of the QEMU process on the host.
CVSS Details
- CVSS 3.1 Base Score: 6.3
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade qemu | Aug 22, 2024 | Jan 30, 2021 |
| Debian | — | Upgrade qemu | Apr 12, 2021 | Jan 30, 2021 |
| Suse | — | Upgrade qemu-ipxeUpgrade qemu-hw-s390x-virtio-gpu-ccwUpgrade qemu-block-nfsUpgrade qemu-sgabiosUpgrade qemu-armUpgrade qemuUpgrade qemu-hw-display-virtio-vgaUpgrade qemu-ui-openglUpgrade qemu-hw-display-qxlUpgrade qemu-toolsUpgrade qemu-audio-spiceUpgrade qemu-s390xUpgrade qemu-hw-display-virtio-gpu-pciUpgrade qemu-ui-cursesUpgrade qemu-x86Upgrade qemu-ivshmem-toolsUpgrade qemu-block-glusterUpgrade qemu-hw-display-virtio-gpuUpgrade qemu-vgabiosUpgrade qemu-extraUpgrade qemu-ui-spice-appUpgrade qemu-langUpgrade qemu-block-sshUpgrade qemu-skibootUpgrade qemu-chardev-baumUpgrade qemu-ppcUpgrade qemu-vhost-user-gpuUpgrade qemu-ui-spice-coreUpgrade qemu-audio-alsaUpgrade qemu-kvmUpgrade qemu-block-rbdUpgrade qemu-block-iscsiUpgrade qemu-ui-gtkUpgrade qemu-hw-usb-smartcardUpgrade qemu-hw-usb-redirectUpgrade qemu-audio-paUpgrade qemu-block-curlUpgrade qemu-guest-agentUpgrade qemu-ksmUpgrade qemu-block-dmgUpgrade qemu-seabiosUpgrade qemu-microvmUpgrade qemu-chardev-spice | Jun 11, 2021 | Nov 30, 2020 |
| Ubuntu | — | Upgrade qemu-system (Ubuntu Pro)Upgrade qemu-system-s390xUpgrade qemu-system-arm (Ubuntu Pro)Upgrade qemu-user-static (Ubuntu Pro)Upgrade qemu-system-common (Ubuntu Pro)Upgrade qemu-keymaps (Ubuntu Pro)Upgrade qemu-systemUpgrade qemu-system-armUpgrade qemu (Ubuntu Pro)Upgrade qemu-system-misc (Ubuntu Pro)Upgrade qemu-system-ppc (Ubuntu Pro)Upgrade qemu-system-x86-xenUpgrade qemu-system-x86-microvmUpgrade qemu-system-ppcUpgrade qemu-common (Ubuntu Pro)Upgrade qemu-kvm (Ubuntu Pro)Upgrade qemu-system-x86 (Ubuntu Pro)Upgrade qemu-utils (Ubuntu Pro)Upgrade qemu-guest-agent (Ubuntu Pro)Upgrade qemu-system-mips (Ubuntu Pro)Upgrade qemu-system-aarch64 (Ubuntu Pro)Upgrade qemu-system-aarch64Upgrade qemu-system-sparc (Ubuntu Pro)Upgrade qemu-system-mipsUpgrade qemu-user (Ubuntu Pro)Upgrade qemu-system-x86Upgrade qemu-system-miscUpgrade qemu-system-sparc | Dec 1, 2020 | Nov 30, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub