Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-3947

A stack-buffer-overflow was found in QEMU in the NVME component. The flaw lies in nvme_changed_nslist() where a malicious guest controlling certain input can read out of bounds memory. A malicious user could use this flaw leading to disclosure of sensitive information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 11.9%
CVSS Severity
CVSS v3 Score 5.5
CVSS v2 Score 2.1
Products affected by CVE-2021-3947
  • Qemu » Qemu » Version: 6.0.0
    cpe:2.3:a:qemu:qemu:6.0.0
  • Qemu » Qemu » Version: 6.1.0
    cpe:2.3:a:qemu:qemu:6.1.0
  • Qemu » Qemu » Version: 6.2.0
    cpe:2.3:a:qemu:qemu:6.2.0


Contact Us

Shodan ® - All rights reserved