← voltar
CVE-2020-35505

CVE-2020-35505

EPSS 0.3%CWE-476
Vexday Risk Score
3Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS EPSS 0.3%KEV nãoPoC Nuclei Metasploit Patch referenciado
Ciclo de vida
28 mai 2021Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
A NULL pointer dereference flaw was found in the am53c974 SCSI host bus adapter emulation of QEMU in versions before 6.0.0. This issue occurs while handling the 'Information Transfer' command. This flaw allows a privileged guest user to crash the QEMU process on the host, resulting in a denial of service. The highest threat from this vulnerability is to system availability.
Produtos afetados
n/a · QEMU

Quer saber se a sua infraestrutura está exposta a isto?

Falar com a TrueHacking →