[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256288

 
 

909

 
 

199146

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2-2023-2191 --- qemu

ID: oval:org.secpod.oval:def:1701515Date: (C)2023-08-17   (M)2024-04-25
Class: PATCHFamily: unix




There is a vulnerability in the lsi53c895a device which affects the latest version of qemu. The carefully designed PoC can repeatedly trigger DMA writes but does not limit the addresses written to the DMA, resulting in reentrancy issues and eventually overflow

Platform:
Amazon Linux 2
Product:
qemu
ivshmem-tools
qemu-guest-agent
qemu-img
Reference:
ALAS2-2023-2191
CVE-2023-0330
CVE    1
CVE-2023-0330

© SecPod Technologies