VulnerabilityModified
CVE-2020-35505
This flaw allows a privileged guest user to crash the QEMU process on the host, resulting in a denial of service.
MEDIUM 4.4EPSS 0.32%
Does this matter?
Lower severity and a low EPSS score (0.32%). Track it; it rarely justifies an emergency change on its own.
Description
A NULL pointer dereference flaw was found in the am53c974 SCSI host bus adapter emulation of QEMU in versions before 6.0.0. This issue occurs while handling the 'Information Transfer' command. This flaw allows a privileged guest user to crash the QEMU process on the host, resulting in a denial of service. The highest threat from this vulnerability is to system availability.
- CVSS 3.1
- 4.4 MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
- EPSS
- 0.32% probability · 25th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-476
- Affected
- qemu/qemu · debian/debian linux
- Source
- secalert@redhat.com
References
- http://www.openwall.com/lists/oss-security/2021/04/16/3Mailing List, Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1909769Issue Tracking, Patch, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2022/09/msg00008.htmlMailing List, Third Party Advisory
- https://security.gentoo.org/glsa/202208-27Third Party Advisory
- https://security.netapp.com/advisory/ntap-20210713-0006/Third Party Advisory
- https://www.openwall.com/lists/oss-security/2021/04/16/3Mailing List, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2021/04/16/3Mailing List, Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1909769Issue Tracking, Patch, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2022/09/msg00008.htmlMailing List, Third Party Advisory
- https://security.gentoo.org/glsa/202208-27Third Party Advisory
- https://security.netapp.com/advisory/ntap-20210713-0006/Third Party Advisory
- https://www.openwall.com/lists/oss-security/2021/04/16/3Mailing List, Patch, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.