The addressspacewritecontinue function in exec.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds access and guest instance crash) by leveraging use of qemumapramptr to access guest ram block area.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "2.9.1"
},
{
"introduced": "0"
},
{
"last_affected": "9.0"
}
]
}