VulnerabilityModified
CVE-2020-11869
An integer overflow was found in QEMU 4.0.1 through 4.2.0 in the way it implemented ATI VGA emulation.
LOW 3.3EPSS 0.40%
Does this matter?
Lower severity and a low EPSS score (0.40%). Track it; it rarely justifies an emergency change on its own.
Description
An integer overflow was found in QEMU 4.0.1 through 4.2.0 in the way it implemented ATI VGA emulation. This flaw occurs in the ati_2d_blt() routine in hw/display/ati-2d.c while handling MMIO write operations through the ati_mm_write() callback. A malicious guest could abuse this flaw to crash the QEMU process, resulting in a denial of service.
- CVSS 3.1
- 3.3 LOWCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
- EPSS
- 0.40% probability · 33th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-190
- Affected
- qemu/qemu
- Source
- cve@mitre.org
References
- http://www.openwall.com/lists/oss-security/2020/04/24/2Mailing List, Patch, Third Party Advisory
- https://git.qemu.org/?p=qemu.git%3Ba=commit%3Bh=ac2071c3791b67fc7af78b8ceb320c01ca1b5df7
- https://usn.ubuntu.com/4372-1/
- http://www.openwall.com/lists/oss-security/2020/04/24/2Mailing List, Patch, Third Party Advisory
- https://git.qemu.org/?p=qemu.git%3Ba=commit%3Bh=ac2071c3791b67fc7af78b8ceb320c01ca1b5df7
- https://usn.ubuntu.com/4372-1/
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.