CVE-2021-3607

Related Vulnerabilities: CVE-2021-3607  

No description is available for this CVE.

Description

No description is available for this CVE.

Statement

The versions of `qemu-kvm` as shipped with Red Hat Enterprise Linux and RHEL Advanced Virtualization are not affected by this flaw, as they are not built with PVRDMA support.

The versions of qemu-kvm as shipped with Red Hat Enterprise Linux and RHEL Advanced Virtualization are not affected by this flaw, as they are not built with PVRDMA support.

Additional Information

  • Bugzilla 1973349: CVE-2021-3607 QEMU: pvrdma: unchecked malloc size due to integer overflow in init_dev_ring()
  • CWE-190->CWE-770->(CWE-125|CWE-476): Integer Overflow or Wraparound leads to Allocation of Resources Without Limits or Throttling leads to Out-of-bounds Read or NULL Pointer Dereference
  • FAQ: Frequently asked questions about CVE-2021-3607