Vulnerability Details CVE-2020-24165
An issue was discovered in TCG Accelerator in QEMU 4.2.0, allows local attackers to execute arbitrary code, escalate privileges, and cause a denial of service (DoS). Note: This is disputed as a bug and not a valid security issue by multiple third parties.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.1%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2020-24165
-
cpe:2.3:a:qemu:qemu:4.2.0
-
cpe:2.3:o:debian:debian_linux:10.0