Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Eugenio Perez

#44936of 53,638
5.6Total CVSS
Vulnerabilities · 1
PT-2023-9175
5.6
2023-07-31
Qemu · Qemu · CVE-2023-3301
**Name of the Vulnerable Software and Affected Versions** QEMU (affected versions not specified) **Description** A flaw in QEMU's virtio-net interface is related to the asynchronous nature of hot-unplug, allowing a race scenario. This could enable a malicious guest to trigger an assertion and cause a denial of service by exploiting the time window where the net device backend is cleared before the virtio-net pci frontend has been unplugged. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.