Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-4135
HistoryAug 04, 2023 - 2:15 p.m.

Heap overflow

2023-08-0414:15:00
PRIOn knowledge base
www.prio-n.com
10
heap overflow
memory read
qemu
nvd
arbitrary disclosure

6.3 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

16.1%

A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. The QEMU process does not validate an offset provided by the guest before computing a host heap pointer, which is used for copying data back to the guest. Arbitrary heap memory relative to an allocated buffer can be disclosed.

6.3 Medium

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

16.1%