Vigilance.fr - QEMU: out-of-bounds memory reading via nvme_fdp_events(), analyzed on 21/12/2023
February 2024 by Vigilance.fr
An attacker, in a guest system, can force a read at an invalid memory address of QEMU, via nvme_fdp_events(), in order to trigger a denial of service, or to obtain sensitive information on the host system.
Plus d'information sur : https://vigilance.fr/vulnerability/QEMU-out-of-bounds-memory-reading-via-nvme-fdp-events-43158