Description
rom_copy() in hw/core/loader.c in QEMU 4.0 and 4.1.0 does not validate the relationship between two addresses, which allows attackers to trigger an invalid memory copy operation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2262-1 | qemu security update |
Debian DLA |
DLA-2288-1 | qemu security update |
EUVD |
EUVD-2020-5982 | rom_copy() in hw/core/loader.c in QEMU 4.0 and 4.1.0 does not validate the relationship between two addresses, which allows attackers to trigger an invalid memory copy operation. |
Ubuntu USN |
USN-4467-1 | QEMU vulnerabilities |
Ubuntu USN |
USN-7094-1 | QEMU vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T12:25:16.492Z
Reserved: 2020-06-02T00:00:00.000Z
Link: CVE-2020-13765
No data.
Status : Modified
Published: 2020-06-04T16:15:12.733
Modified: 2024-11-21T05:01:48.610
Link: CVE-2020-13765
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Ubuntu USN