Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3604-1 | qemu security update |
EUVD |
EUVD-2023-43861 | A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ. |
Ubuntu USN |
USN-6567-1 | QEMU vulnerabilities |
Wed, 25 Sep 2024 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-09-25T19:56:37.371Z
Reserved: 2023-06-09T08:30:43.335Z
Link: CVE-2023-3180
Updated: 2024-08-02T06:48:07.826Z
Status : Modified
Published: 2023-08-03T15:15:29.960
Modified: 2024-11-21T08:16:38.297
Link: CVE-2023-3180
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN