An out-of-bounds read access issue was found in the SD Memory Card emulator of the QEMU. It occurs while performing block write commands via sdhci_write(), if a guest user has sent 'address' which is OOB of 's->wp_groups'. A guest user/process may use this flaw to crash the QEMU process resulting in DoS.
Created qemu tracking bugs for this issue:
Affects: fedora-all [bug 1838547]
Created xen tracking bugs for this issue:
Affects: fedora-all [bug 1838548]
Name: Alexander Bulekov