Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-3929
HistoryAug 25, 2022 - 8:15 p.m.

Design/Logic Flaw

2022-08-2520:15:00
PRIOn knowledge base
www.prio-n.com
5

7.8 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

40.8%

A DMA reentrancy issue was found in the NVM Express Controller (NVME) emulation in QEMU. This CVE is similar to CVE-2021-3750 and, just like it, when the reentrancy write triggers the reset function nvme_ctrl_reset(), data structs will be freed leading to a use-after-free issue. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition or, potentially, executing arbitrary code within the context of the QEMU process on the host.

CPENameOperatorVersion
fedoraeq35
fedoraeq36
qemult7.0.0