CVE-2024-6519

A use-after-free vulnerability was found in the QEMU LSI53C895A SCSI Host Bus Adapter emulation. This issue can lead to a crash or VM escape.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:qemu:qemu:-:*:*:*:*:*:*:*

History

08 Aug 2025, 16:13

Type Values Removed Values Added
First Time Qemu qemu
Qemu
CPE cpe:2.3:a:qemu:qemu:-:*:*:*:*:*:*:*
Summary
  • (es) Se encontró una vulnerabilidad de use after free en la emulación del adaptador de bus host SCSI QEMU LSI53C895A. Este problema puede provocar un bloqueo o un escape de la máquina virtual.
References () https://access.redhat.com/security/cve/CVE-2024-6519 - () https://access.redhat.com/security/cve/CVE-2024-6519 - Third Party Advisory
References () https://bugzilla.redhat.com/show_bug.cgi?id=2292089 - () https://bugzilla.redhat.com/show_bug.cgi?id=2292089 - Issue Tracking, Third Party Advisory
References () https://www.zerodayinitiative.com/advisories/ZDI-24-1382/ - () https://www.zerodayinitiative.com/advisories/ZDI-24-1382/ - Third Party Advisory

21 Oct 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-21 15:15

Updated : 2025-08-08 16:13


NVD link : CVE-2024-6519

Mitre link : CVE-2024-6519

CVE.ORG link : CVE-2024-6519


JSON object : View

Products Affected

qemu

  • qemu
CWE
CWE-416

Use After Free