Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-84159
HistoryJul 13, 2022 - 12:00 a.m.

QEMU Denial of Service Vulnerability (CNVD-2022-84159)

2022-07-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
20

0.001 Low

EPSS

Percentile

32.1%

QEMU (Quick Emulator) is a set of emulation processor software from Fabrice Bellard, a French personal developer. The software is fast and cross-platform. physmem.c version 7.0.0 and below of QEMU has a denial-of-service vulnerability, which stems from the possibility of uninitialized reads of the translate_fail path, which can be exploited by an attacker to cause a crash of io_readx or io_writex.

CPENameOperatorVersion
qemu qemu >=4.1.50,le7.0.0