CVE-2021-3507: Buffer Overflow
A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrltransferhandler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/qemuto a version that resolves this vulnerability.Fixed in 1:5.2+dfsg-11+deb11u3Fixed in 1:7.2+dfsg-7+deb12u12Fixed in 1:10.0.0~rc2+ds-2Fixed in 1:10.0.0~rc3+ds-2
Event History
Frequently Asked Questions
What is the vulnerability ID for this heap buffer overflow in QEMU?
The vulnerability ID is CVE-2021-3507.
In which version of QEMU does this heap buffer overflow vulnerability exist?
This heap buffer overflow vulnerability exists in QEMU up to version 6.0.0 (including).
What is the severity rating of CVE-2021-3507?
CVE-2021-3507 has a severity rating of 6.1 (Medium).
How does this heap buffer overflow vulnerability in QEMU impact the system?
This heap buffer overflow vulnerability in QEMU could allow a privileged guest user to crash the QEMU process.
Are there any known solutions or fixes for CVE-2021-3507?
Yes, you can find more information about available remedies or fixes for CVE-2021-3507 in the provided references.