Related Vulnerabilities: CVE-2021-20221  

A security issue was found in QEMU. When using the non-default option kernel-irqchip=off, undefined behaviour can lead to a heap buffer overflow.

Severity Low

Remote No

Type Arbitrary code execution

Description

A security issue was found in QEMU. When using the non-default option kernel-irqchip=off, undefined behaviour can lead to a heap buffer overflow.

AVG-1308 qemu 5.2.0-2 Medium Vulnerable

https://bugzilla.redhat.com/show_bug.cgi?id=1924601
https://bugs.launchpad.net/qemu/+bug/1914353

Workaround
==========

The issue can be mitigated by using kernel-irqchip=on, which constitutes the recommended default setting of this option.