6

CVE-2021-20221

An out-of-bounds heap buffer access issue was found in the ARM Generic Interrupt Controller emulator of QEMU up to and including qemu 4.2.0on aarch64 platform. The issue occurs because while writing an interrupt ID to the controller memory area, it is not masked to be 4 bits wide. It may lead to the said issue while updating controller state fields and their subsequent processing. A privileged guest user may use this flaw to crash the QEMU process on the host resulting in DoS scenario.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Qemu ≫ Qemu HwPlatform arm64 Version <= 4.2.0
Redhat ≫ Enterprise Linux Version 8.0 SwEdition -
Redhat ≫ Enterprise Linux Version 8.0 SwEdition advanced_virtualization
Debian ≫ Debian Linux Version 9.0
Debian ≫ Debian Linux Version 10.0
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.33% 0.251
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6 1.5 4
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
NIST 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:N/I:N/A:P
CWE-125 Out-of-bounds Read

The product reads data past the end, or before the beginning, of the intended buffer.

CWE-787 Out-of-bounds Write

The product writes data past the end, or before the beginning, of the intended buffer.

https://lists.debian.org/debian-lts-announce/2022/09/msg00008.html
Third Party Advisory
Mailing List
https://lists.debian.org/debian-lts-announce/2021/02/msg00024.html
Third Party Advisory
Mailing List
http://www.openwall.com/lists/oss-security/2021/02/05/1
Patch
Third Party Advisory
Mailing List
https://bugzilla.redhat.com/show_bug.cgi?id=1924601
Patch
Third Party Advisory
Issue Tracking
https://security.netapp.com/advisory/ntap-20210708-0005/
Third Party Advisory