tcp_emu in tcp_subr.c in libslirp 4.1.0, as used in QEMU 4.2.0, mismanages memory, as demonstrated by IRC DCC commands in EMU_IRC. This can cause a heap-based buffer overflow or other out-of-bounds access which can lead to a DoS or potential execute arbitrary code.
References
Information
Published : 2020-01-16 15:15
Updated : 2021-02-13 19:50
NVD link : CVE-2020-7039
Mitre link : CVE-2020-7039
JSON object : View
CWE
CWE-787
Out-of-bounds Write
Products Affected
debian
- debian_linux
opensuse
- leap
qemu
- qemu
libslirp_project
- libslirp