Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27048
HistorySep 21, 2020 - 6:32 a.m.

Denial Of Service (DoS)

2020-09-2106:32:38
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

0.001 Low

EPSS

Percentile

31.1%

qemu:xenial is vulnerable to denial of service (DoS). The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds heap access and crash) or execute arbitrary code on the QEMU host via vectors involving the data transfer length.