cbcvebase.
CVE-2021-20221
published 2021-05-13

CVE-2021-20221: An out-of-bounds heap buffer access issue was found in the ARM Generic Interrupt Controller emulator of QEMU up to and including qemu 4.2.0on aarch64 platform…

PriorityP421medium6CVSS 3.1
AVLACLPRHUINSCCNINAH
EPSS
0.32%
24.4th percentile
An out-of-bounds heap buffer access issue was found in the ARM Generic Interrupt Controller emulator of QEMU up to and including qemu 4.2.0on aarch64 platform. The issue occurs because while writing an interrupt ID to the controller memory area, it is not masked to be 4 bits wide. It may lead to the said issue while updating controller state fields and their subsequent processing. A privileged guest user may use this flaw to crash the QEMU process on the host resulting in DoS scenario.

Affected

14 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debiandebian_linux
debianqemu< qemu 1:5.2+dfsg-4 (bookworm)qemu 1:5.2+dfsg-4 (bookworm)
msrccm1_qemu-kvm_4.2.0-33_on_cbl_mariner_1.0
qemuqemu<= 4.2.0
qemuqemu
qemuqemu>= 0 < 1:5.2+dfsg-41:5.2+dfsg-4
qemuqemu>= 0 < 1:5.2+dfsg-41:5.2+dfsg-4
qemuqemu>= 0 < 1:5.2+dfsg-41:5.2+dfsg-4
qemuqemu>= 0 < 1:5.2+dfsg-41:5.2+dfsg-4
qemuqemu>= 0 < 1:2.11+dfsg-1ubuntu7.371:2.11+dfsg-1ubuntu7.37
qemuqemu>= 0 < 1:4.2-3ubuntu6.171:4.2-3ubuntu6.17
redhatenterprise_linux
ubuntuqemu

CVSS provenance

nvdv3.16.0MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:N/A:P
osv6.0MEDIUM
vendor_debian6.0MEDIUM
vendor_msrc6.0MEDIUM
vendor_redhat6.0MEDIUM
vendor_ubuntu3.8LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.