ide_atapi_cmd_reply_end in hw/ide/atapi.c in QEMU 5.1.0 allows out-of-bounds read access because a buffer index is not validated.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
qemu qemu 5.1.0 |
||
debian debian linux 9.0 |
||
debian debian linux 10.0 |