CVE-2019-6501Out-of-bounds Read in Qemu

Severity
5.5MEDIUMNVD
EPSS
0.1%
top 69.20%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 21
Latest updateMay 14

Description

In QEMU 3.1, scsi_handle_inquiry_reply in hw/scsi/scsi-generic.c allows out-of-bounds write and read operations.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages3 packages

debiandebian/qemu< qemu 1:3.1+dfsg-3 (bookworm)
Debianqemu/qemu< 1:3.1+dfsg-3+3
NVDqemu/qemu3.1

Also affects: Fedora 30

Patches

🔴Vulnerability Details

2
GHSA
GHSA-rhjv-54vx-5mjg: In QEMU 32022-05-14
OSV
CVE-2019-6501: In QEMU 32019-03-21

📋Vendor Advisories

2
Red Hat
QEMU: scsi-generic: possible OOB access while handling inquiry request2019-01-11
Debian
CVE-2019-6501: qemu - In QEMU 3.1, scsi_handle_inquiry_reply in hw/scsi/scsi-generic.c allows out-of-b...2019

💬Community

3
Bugzilla
CVE-2019-11772 IBM JDK: Out-of-bounds access in the String.getBytes method2019-08-07
Bugzilla
CVE-2019-6501 qemu: scsi-generic: possible OOB access while handling inquiry request [fedora-all]2019-01-24
Bugzilla
CVE-2019-6501 QEMU: scsi-generic: possible OOB access while handling inquiry request2019-01-22