bugzilla.redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2036966 CVE-2021-4207
HIGH
Record summary
CVE-2021-4207 has a selected CVSS score of 8.2 (high); EIP currently links 1 curated repository PoC.
Description
A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.height` can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. A malicious privileged guest user could use this flaw to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process.
Description source: CVE List
Exploitation context
Available material
- Curated repository PoCs
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
QEMU | CVE List | qemu-kvm 7.0.0 | affected |
Proofs of concept
1Curated repository PoCs
GitHubCVE-2021-4207Curated repository PoCby star-sgStars: 318Not analyzed2 files
References
7[debian-lts-announce] 20220905 [SECURITY] [DLA 3099-1] qemu security updatemailing list
https://lists.debian.org/debian-lts-announce/2022/09/msg00008.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2021-4207 GLSA-202208-27Vendor advisory
https://security.gentoo.org/glsa/202208-27 security.netapp.com
https://security.netapp.com/advisory/ntap-20250321-0009 starlabs.sg
https://starlabs.sg/advisories/21-4207 DSA-5133Vendor advisory
https://www.debian.org/security/2022/dsa-5133