Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Philippe Mathieu-Daudé

#40718of 53,635
6.5Total CVSS
Vulnerabilities · 1
PT-2022-4747
6.5
2021-07-21
Qemu · Qemu · CVE-2021-3611
**Name of the Vulnerable Software and Affected Versions** QEMU versions prior to 7.0.0 **Description** A stack overflow vulnerability was found in the Intel HD Audio device of QEMU, allowing a malicious guest to crash the QEMU process on the host, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability. **Recommendations** For QEMU versions prior to 7.0.0, update to version 7.0.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the Intel HD Audio device to minimize the risk of exploitation.