#VU27544 Buffer overflow in QEMU - CVE-2020-11102
Published: May 5, 2020
QEMU
QEMU
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary within hw/net/tulip.c in QEMU during the copying of tx/rx buffers because the frame size is not validated against the r/w data length. A remote attacker can trigger memory corruption and execute arbitrary code on the target system.