• caglararli@hotmail.com
  • 05386281520

CVE-2023-6693 | QEMU virtio-net Device virtio_net_flush_tx out_sg stack-based overflow

Çağlar Arlı      -    18 Views

CVE-2023-6693 | QEMU virtio-net Device virtio_net_flush_tx out_sg stack-based overflow

A vulnerability was found in QEMU. It has been declared as critical. Affected by this vulnerability is the function virtio_net_flush_tx of the component virtio-net Device. The manipulation of the argument out_sg leads to stack-based buffer overflow. This vulnerability is known as CVE-2023-6693. Local access is required to approach this attack. There is no exploit available.