CVE-2020-13659 PUBLISHED

address_space_map in exec.c in QEMU 4.2.0 can trigger a NULL pointer dereference related to BounceBuffer.

EPSS 0.04% · 10.8th percentile

Risk Scores

EPSS Score
0.04%
10.8th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSqemu1:4.2-3ubuntu6.3, 1:4.2-3ubuntu6.2, 1:4.2-3ubuntu6.1
Ubuntu:16.04:LTSqemu1:2.5+dfsg-5ubuntu10.9, 1:2.5+dfsg-5ubuntu10.10, 1:2.5+dfsg-5ubuntu10.11
Ubuntu:Pro:14.04:LTSqemu2.0.0+dfsg-2ubuntu1.46, 2.0.0+dfsg-2ubuntu1.47, 2.0.0+dfsg-2ubuntu1.19
Ubuntu:18.04:LTSqemu1:2.11+dfsg-1ubuntu7.5, 1:2.11+dfsg-1ubuntu7.6, 1:2.11+dfsg-1ubuntu7.7

Timeline

References

Open in Interactive Console →