Security Advisory

CVE-2020-13765

5.6
MEDIUM

Vulnerability Description

rom_copy() in hw/core/loader.c in QEMU 4.0 and 4.1.0 does not validate the relationship between two addresses, which allows attackers to trigger an invalid memory copy operation.
Published Date June 4, 2020
Official Source NIST NVD Advisory