CVE-2020-13362 | QEMU 4.2.0 hw/scsi/megasas.c megasas_lookup_frame reply_queue_head out-of-bounds (Nessus ID 209571)
A vulnerability, which was classified as problematic, has been found in QEMU 4.2.0. Affected by this issue is the function megasas_lookup_frame of the file hw/scsi/megasas.c. The manipulation of the argument reply_queue_head leads to out-of-bounds read.
This vulnerability is handled as CVE-2020-13362. Attacking locally is a requirement. There is no exploit available.