PT-2021-4578 · Qemu+9 · Qemu+9

Published

2020-12-18

·

Updated

2026-06-09

·

CVE-2020-29443

CVSS v3.1

6.4

Medium

VectorAV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions QEMU version 5.1.0
Description The issue is related to the ide atapi cmd reply end function in the QEMU emulator, which allows out-of-bounds read access due to a lack of buffer index validation. This can potentially enable an attacker to access confidential data and cause a denial of service.
Recommendations For QEMU version 5.1.0, consider disabling the ide atapi cmd reply end function in hw/ide/atapi.c as a temporary workaround until a patch is available. Restrict access to sensitive data and monitor for potential denial of service attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2021:1762
ALT-PU-2020-3527
ALT-PU-2021-1767
BDU:2021-05249
CESA-2021_1762
CESA-2021_2322
CVE-2020-29443
DLA-2560-1
DLA-3099-1
OESA-2021-1128
OPENSUSE-SU-2021:0600-1
OPENSUSE-SU-2021_0600-1
RHSA-2021:1762
RHSA-2021:2322
RHSA-2021:2529
RHSA-2021_1762
RHSA-2021_2322
RLSA-2021:1762
SUSE-SU-2021:1240-1
SUSE-SU-2021:1241-1
SUSE-SU-2021:1242-1
SUSE-SU-2021:1243-1
SUSE-SU-2021:1244-1
SUSE-SU-2021:1245-1
SUSE-SU-2021:1305-1
SUSE-SU-2021:14704-1
SUSE-SU-2021:14706-1
SUSE-SU-2021_14704-1
USN-4725-1
USN-5010-1
USN-8412-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Qemu
Red Hat
Rocky Linux
Suse
Ubuntu