CVE-2023-40360NULL Pointer Dereference in Qemu

Severity
5.5MEDIUMNVD
OSV3.2
EPSS
0.0%
top 87.65%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 14
Latest updateJun 6

Description

QEMU through 8.0.4 accesses a NULL pointer in nvme_directive_receive in hw/nvme/ctrl.c because there is no check for whether an endurance group is configured before checking whether Flexible Data Placement is enabled.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages3 packages

Debianqemu/qemu< 1:8.0.4+dfsg-2+1
Ubuntuqemu/qemu< 1:4.2-3ubuntu6.28+3
NVDqemu/qemu8.0.08.0.4

Patches

🔴Vulnerability Details

5
OSV
qemu regression2024-06-06
OSV
qemu vulnerabilities2024-01-08
CVEList
CVE-2023-40360: QEMU through 82023-08-14
GHSA
GHSA-gjhx-wc4x-rwwp: QEMU through 82023-08-14
OSV
CVE-2023-40360: QEMU through 82023-08-14

📋Vendor Advisories

4
Ubuntu
QEMU regression2024-06-06
Ubuntu
QEMU vulnerabilities2024-01-08
Red Hat
QEMU: NVMe: NULL pointer dereference in nvme_directive_receive()2023-08-06
Debian
CVE-2023-40360: qemu - QEMU through 8.0.4 accesses a NULL pointer in nvme_directive_receive in hw/nvme/...2023