![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2020-35505 |
Description: | A NULL pointer dereference flaw was found in the am53c974 SCSI host bus adapter emulation of QEMU in versions before 6.0.0. This issue occurs while handling the 'Information Transfer' command. This flaw allows a privileged guest user to crash the QEMU process on the host, resulting in a denial of service. The highest threat from this vulnerability is to system availability. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.893099 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2020-35505 https://security.gentoo.org/glsa/202208-27 https://bugzilla.redhat.com/show_bug.cgi?id=1909769 https://bugzilla.redhat.com/show_bug.cgi?id=1909769 https://www.openwall.com/lists/oss-security/2021/04/16/3 https://www.openwall.com/lists/oss-security/2021/04/16/3 https://lists.debian.org/debian-lts-announce/2022/09/msg00008.html http://www.openwall.com/lists/oss-security/2021/04/16/3 |