Back to bug 2229101

Who When What Removed Added
Mauro Matteo Cascella 2023-08-04 07:52:40 UTC Depends On 2229104
Mauro Matteo Cascella 2023-08-04 07:58:14 UTC Doc Text A heap out of bounds memory read was found in the virtual nvme device in QEMU. An offset provided by guest is not validated by the QEMU process before computing a host heap pointer, which is used for copying data back to guest. Arbitrary heap memory relative to an allocated buffer can be disclosed.
RaTasha Tillery-Smith 2023-08-04 12:50:27 UTC Doc Text A heap out of bounds memory read was found in the virtual nvme device in QEMU. An offset provided by guest is not validated by the QEMU process before computing a host heap pointer, which is used for copying data back to guest. Arbitrary heap memory relative to an allocated buffer can be disclosed. A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. The QEMU process does not validate an offset provided by the guest before computing a host heap pointer, which is used for copying data back to the guest. Arbitrary heap memory relative to an allocated buffer can be disclosed.
Product Security DevOps Team 2023-08-04 13:04:31 UTC Status NEW CLOSED
Resolution --- NOTABUG
Last Closed 2023-08-04 13:04:31 UTC

Back to bug 2229101