CVE-2020-10756
CVSS v3.1
6.5 (Medium)
CVSS v2.0
2.1 (Low)
EPSS
0.07 % (31th)
Affected Products
6
Advisories
25
An out-of-bounds read vulnerability was found in the SLiRP networking implementation of the QEMU emulator. This flaw occurs in the icmp6_send_echoreply() routine while replying to an ICMP echo request, also known as ping. This flaw allows a malicious guest to leak the contents of the host memory, resulting in possible information disclosure. This flaw affects versions of libslirp before 4.3.1.
- CVE Status
- PUBLISHED
- CNA
- Red Hat, Inc.
- Published Date
-
2020-07-09 16:15:13
(4 years ago) - Updated Date
-
2023-11-07 03:14:20
(10 months ago)
Affected Products
Loading...
Loading...
Loading...
Configuration #1
|
Configuration #2
|
Configuration #3
|
Configuration #4
|
Configuration #5
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...