RHSA-2021:3061MediumCVSS 5.4
Red Hat Security Advisory: virt:rhel and virt-devel:rhel security and bug fix update
🔗 CVE IDs covered (5)
📋 Description
CVE-2020-13754 — QEMU: msix: OOB access during mmio operations may lead to DoS CVE-2020-27617 — QEMU: net: an assert failure via eth_get_gso_type CVE-2021-3416 — QEMU: net: Infinite loop in loopback mode may lead to stack overflow CVE-2021-3504 — hivex: Buffer overflow when provided invalid node key length CVE-2021-20221 — qemu: out-of-bound heap buffer access via an interrupt ID field
🔗 References (9)
- selfhttps://access.redhat.com/errata/RHSA-2021:3061
- externalhttps://access.redhat.com/security/updates/classification/#moderate
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1842363
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1891668
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1924601
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1932827
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1949687
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=1958301
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2021/rhsa-2021_3061.json