OSV-2022-581

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/qemu/OSV-2022-581.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2022-581
Published
2022-07-14T00:00:45.644503Z
Modified
2024-12-11T14:36:33.804671Z
Summary
Heap-buffer-overflow in megasas_map_sgl
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=49086

Crash type: Heap-buffer-overflow READ 4
Crash state:
megasas_map_sgl
megasas_mmio_write
megasas_port_write
References

Affected packages

OSS-Fuzz / qemu

Package

Name
qemu
Purl
pkg:generic/qemu

Affected ranges

Type
GIT
Repo
https://git.qemu.org/git/qemu.git
Events
Introduced
0e042025b9fe262316f29e4b8ec47f0b85c24e5f

Affected versions

v6.*

v6.2.0
v6.2.0-rc0
v6.2.0-rc1
v6.2.0-rc3
v6.2.0-rc4

v7.*

v7.0.0
v7.0.0-rc0
v7.0.0-rc1
v7.0.0-rc2
v7.0.0-rc3
v7.0.0-rc4
v7.1.0
v7.1.0-rc0
v7.1.0-rc1
v7.1.0-rc2
v7.1.0-rc3
v7.1.0-rc4
v7.2.0
v7.2.0-rc0
v7.2.0-rc1
v7.2.0-rc2
v7.2.0-rc3
v7.2.0-rc4
v7.2.1
v7.2.10
v7.2.11
v7.2.12
v7.2.13
v7.2.14
v7.2.15
v7.2.2
v7.2.3
v7.2.4
v7.2.5
v7.2.6
v7.2.7
v7.2.8
v7.2.9

v8.*

v8.0.0
v8.0.0-rc0
v8.0.0-rc1
v8.0.0-rc2
v8.0.0-rc3
v8.0.0-rc4
v8.0.1
v8.0.2
v8.0.3
v8.0.4
v8.0.5
v8.1.0
v8.1.0-rc0
v8.1.0-rc1
v8.1.0-rc2
v8.1.0-rc3
v8.1.0-rc4
v8.1.1
v8.1.2
v8.1.3
v8.1.4
v8.1.5
v8.2.0
v8.2.0-rc0
v8.2.0-rc1
v8.2.0-rc2
v8.2.0-rc3
v8.2.0-rc4
v8.2.1
v8.2.2
v8.2.3
v8.2.4
v8.2.5
v8.2.6
v8.2.7
v8.2.8

v9.*

v9.0.0
v9.0.0-rc0
v9.0.0-rc1
v9.0.0-rc2
v9.0.0-rc3
v9.0.0-rc4
v9.0.1
v9.0.2
v9.0.3
v9.0.4
v9.1.0
v9.1.0-rc0
v9.1.0-rc1
v9.1.0-rc2
v9.1.0-rc3
v9.1.0-rc4
v9.1.1
v9.1.2
v9.2.0
v9.2.0-rc0
v9.2.0-rc1
v9.2.0-rc2
v9.2.0-rc3

Ecosystem specific

{
    "severity": "MEDIUM"
}