Lucene search

K
redhatcveRedhat.comRH:CVE-2020-25085
HistorySep 16, 2020 - 7:00 p.m.

CVE-2020-25085

2020-09-1619:00:05
redhat.com
access.redhat.com
16

0.001 Low

EPSS

Percentile

25.6%

A flaw was found in QEMU. An out-of-bounds read/write access issue was found in the SDHCI Controller emulator of QEMU. It may occur while doing multi block SDMA, if transfer block size exceeds the ‘s->fifo_buffer[s->buf_maxsz]’ size which would leave the current element pointer ‘s->data_count’ pointing out of bounds. This would lead the subsequent DMA r/w operation to an OOB access issue where a guest user/process may use this flaw to crash the QEMU process resulting in DoS scenario. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.