Vulnerabilities > CVE-2020-25084 - Use After Free vulnerability in multiple products

047910
CVSS 3.2 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
LOW
local
low complexity
qemu
debian
CWE-416

Summary

QEMU 5.0.0 has a use-after-free in hw/usb/hcd-xhci.c because the usb_packet_map return value is not checked.

Vulnerable Configurations

Part Description Count
Application
Qemu
1
OS
Debian
2

Common Weakness Enumeration (CWE)