Vulnerability Name:

CVE-2021-3545 (CCN-202763)

Assigned:2021-05-31
Published:2021-05-31
Updated:2022-10-25
Summary:An information disclosure vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including 6.0. The flaw exists in virgl_cmd_get_capset_info() in contrib/vhost-user-gpu/virgl.c and could occur due to the read of uninitialized memory. A malicious guest could exploit this issue to leak memory from the host.
CVSS v3 Severity:6.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N)
5.7 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): None
Availibility (A): None
6.2 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N)
5.4 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): None
Availibility (A): None
CVSS v2 Severity:2.1 Low (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): None
Availibility (A): None
4.9 Medium (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:N/A:N)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): None
Availibility (A): None
Vulnerability Type:CWE-908
CWE-200
CWE-908
Vulnerability Consequences:Obtain Information
References:Source: MITRE
Type: CNA
CVE-2021-3545

Source: MLIST
Type: Mailing List, Third Party Advisory
[oss-security] 20210531 QEMU: security issues in vhost-user-gpu

Source: MISC
Type: Issue Tracking, Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=1958955

Source: XF
Type: UNKNOWN
qemu-cve20213545-info-disc(202763)

Source: CCN
Type: qemu-devel Web site
[PATCH v2 0/8] vhost-user-gpu: fix several security issues

Source: CCN
Type: oss-sec Mailing List, Mon, 31 May 2021 18:40:04 +0200
QEMU: security issues in vhost-user-gpu

Source: GENTOO
Type: Third Party Advisory
GLSA-202208-27

Source: CONFIRM
Type: Third Party Advisory
https://security.netapp.com/advisory/ntap-20210720-0008/

Source: DEBIAN
Type: Third Party Advisory
DSA-4980

Vulnerable Configuration:Configuration 1:
  • cpe:/a:qemu:qemu:*:*:*:*:*:*:*:* (Version <= 6.0.0)

  • Configuration 2:
  • cpe:/o:debian:debian_linux:11.0:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:qemu:qemu:-:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:8041
    P
    nasm-2.15.05-150500.1.2 on GA media (Moderate)
    2023-06-20
    oval:org.opensuse.security:def:7974
    P
    python3-bottle-0.12.13-150000.3.6.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:7791
    P
    qemu-tools-7.1.0-150500.47.15 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:737
    P
    Security update for ImageMagick (Moderate)
    2022-09-06
    oval:org.opensuse.security:def:3638
    P
    Security update for systemd-presets-common-SUSE (Moderate) (in QA)
    2022-07-13
    oval:org.opensuse.security:def:95309
    P
    Security update for ImageMagick (Moderate)
    2022-07-06
    oval:org.opensuse.security:def:3518
    P
    guile-2.0.9-9.3.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3452
    P
    cifs-utils-6.9-9.6.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3187
    P
    libidn-tools-1.28-5.6.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:6082
    P
    Security update for openssl (Moderate)
    2022-06-24
    oval:org.opensuse.security:def:6081
    P
    Security update for python3 (Important)
    2022-06-23
    oval:org.opensuse.security:def:94817
    P
    qemu-tools-6.2.0-150400.35.10 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:95148
    P
    qemu-6.2.0-150400.35.10 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:94564
    P
    glib2-devel-2.70.4-150400.1.5 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:351
    P
    qemu-6.2.0-150400.35.10 on GA media (Moderate)
    2022-06-10
    oval:org.opensuse.security:def:102022
    P
    Security update for the Linux Kernel (Live Patch 10 for SLE 15 SP3) (Important)
    2022-03-02
    oval:org.opensuse.security:def:113318
    P
    qemu-6.1.0-32.1 on GA media (Moderate)
    2022-01-17
    oval:org.opensuse.security:def:106728
    P
    qemu-6.1.0-32.1 on GA media (Moderate)
    2021-10-01
    oval:org.opensuse.security:def:101277
    P
    kernel-docs-5.3.18-57.3 on GA media (Moderate)
    2021-08-09
    oval:org.opensuse.security:def:110968
    P
    Security update for qemu (Moderate)
    2021-07-14
    oval:org.opensuse.security:def:111611
    P
    Security update for qemu (Moderate)
    2021-07-09
    oval:org.opensuse.security:def:64541
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:108688
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:97150
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:67171
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:75918
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:5761
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:117458
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:64727
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:109411
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:42098
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:97151
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:102745
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:69063
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:76238
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:118507
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:1618
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:96055
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:66850
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:73663
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:101468
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:69130
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:76239
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:107943
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:67170
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:73849
    P
    Security update for qemu (Moderate)
    2021-06-30
    oval:org.opensuse.security:def:102194
    P
    Security update for qemu (Moderate)
    2021-06-30
    BACK
    qemu qemu *
    debian debian linux 11.0
    qemu qemu -