Wind River Support Network

HomeDefectsLIN1021-6040
Acknowledged

LIN1021-6040 : Security Advisory - qemu - CVE-2023-3019

Created: Jul 12, 2023    Updated: Jul 25, 2023
Found In Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service.

https://nvd.nist.gov/vuln/detail/CVE-2023-3019
Live chat
Online