← Back to CVE List

CVE-2019-20808

Published: 2020-12-31T01:15Z
Last Modified: 2024-11-21T04:39Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In QEMU 4.1.0, an out-of-bounds read flaw was found in the ATI VGA implementation. It occurs in the ati_cursor_define() routine while handling MMIO write operations through the ati_mm_write() callback. A malicious guest could abuse this flaw to crash the QEMU process, resulting in a denial of service. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt