CVE-2020-13791 PUBLISHED

hw/pci/pci.c in QEMU 4.2.0 allows guest OS users to trigger an out-of-bounds access by providing an address near the end of the PCI configuration space.

EPSS 0.17% · 38.5th percentile

Risk Scores

EPSS Score
0.17%
38.5th percentile

Affected Products

VendorProductVersions
Ubuntu:25.10qemu*, *, 1:10.1.0+ds-5ubuntu2.2
Ubuntu:24.04:LTSqemu0, *, 1:8.2.2+ds-0ubuntu1.12
Ubuntu:20.04:LTSqemu1:4.2-3ubuntu6.30, *, *
Ubuntu:22.04:LTSqemu1:6.2+dfsg-2ubuntu6.26, 1:6.2+dfsg-2ubuntu6.27, *

Timeline

References

Open in Interactive Console →