PT-2019-5280 · Qemu+2 · Qemu+2

Published

2019-10-09

·

Updated

2022-05-13

·

CVE-2019-12067

CVSS v3.1

6.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions QEMU (affected versions not specified)
Description The issue is related to a null pointer dereference in QEMU, which can lead to a denial of service. Specifically, the ahci commit buf function in ide/ahci.c is vulnerable when the command header ad->cur cmd is null, allowing an attacker to cause a denial of service.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-02181
CVE-2019-12067
ECHO-9DAD-2609-2B54
OESA-2021-1241
SUSE-SU-2019:14199-1
SUSE-SU-2019:14201-1
SUSE-SU-2019_14199-1
SUSE-SU-2020:0388-1

Affected Products

Debian
Qemu
Suse