VDB
BDU%3A2024-08736
BDU%3A2024-08736
PUBLISHED
CVSS 4.599999904632568 MEDIUM
Уязвимость функции nvme_fdp_events() виртуального устройства NVMe эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
Risk Scores
CVSS 2.0
4.599999904632568
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., АО «ИВК», Fabrice Bellard | Ubuntu, АЛЬТ СП 10, QEMU |
Timeline
- Oct 30, 2024 CVE Published
- Nov 14, 2024 CVE Updated
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Distribution Patch
- Mar 19, 2026 Security Advisory
References
- https://gitlab.com/qemu-project/qemu/-/commit/ecb1b7b082d3b7dceff0e486a114502fc52c0fdf url
- https://lists.nongnu.org/archive/html/qemu-devel/2023-08/msg00516.html url
- https://access.redhat.com/security/cve/cve-2023-4135 url
- https://bugzilla.redhat.com/show_bug.cgi?id=2229101 url
- https://ubuntu.com/security/CVE-2023-4135 url
- https://ubuntu.com/security/notices/USN-6567-1 url
- https://www.zerodayinitiative.com/advisories/ZDI-23-1810/ url
- https://cve.basealt.ru/tag/cve-2023-4135.html url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- https://ubuntu.com/security/notices/USN-6567-1?_ga=2.99298266.576187372.1730201642-1340999586.1710235970&_gl=1*n7j3qu*_gcl_au*MjAzNjcxNjUyMy4xNzI3NzY0ODgz advisory