Related Vulnerabilities: CVE-2020-27821  

A heap buffer overflow was found in the Message Signaled Interrupt (MSI-X) device support of QEMU. The overflow could occur due to an out-of-bounds write of the MSIX table while performing MSI-X mmio operations in msix_table_mmio_write(). A guest user may exploit this flaw to crash the QEMU process on the host, resulting in a denial of service condition.

Severity Medium

Remote No

Type Denial of service

Description

A heap buffer overflow was found in the Message Signaled Interrupt (MSI-X) device support of QEMU. The overflow could occur due to an out-of-bounds write of the MSIX table while performing MSI-X mmio operations in msix_table_mmio_write(). A guest user may exploit this flaw to crash the QEMU process on the host, resulting in a denial of service condition.

AVG-1308 qemu 5.1.0-3 Medium Vulnerable

https://bugzilla.redhat.com/show_bug.cgi?id=1902651
https://bugzilla.redhat.com/show_bug.cgi?id=1902651#c6