Medium severity6.0NVD Advisory· Published Jul 24, 2023· Updated May 12, 2026
CVE-2023-3019
CVE-2023-3019
Description
A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service.
Affected products
11cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:-:*:*:*+ 2 more
- cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:-:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:advanced_virtualization:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*
- Red Hat/Red Hat Enterprise Linux 8 Advanced Virtualizationv5cpe:/a:redhat:advanced_virtualization:8::el8
- Red Hat/Red Hat Enterprise Linux 8v5cpe:/a:redhat:enterprise_linux:8::crbRange: 8090020231206155326.a75119d5
- Red Hat/Red Hat Enterprise Linux 9v5cpe:/a:redhat:enterprise_linux:9::appstreamRange: 17:8.2.0-11.el9_4
- Red Hat/Red Hat Enterprise Linux 8.6 Extended Update Supportv5cpe:/a:redhat:rhel_eus:8.6::appstreamRange: 8060020231128234847.ad008a3a
- Red Hat/Red Hat Enterprise Linux 8.8 Extended Update Supportv5cpe:/a:redhat:rhel_eus:8.8::appstreamRange: 8080020240116113044.63b34585
- Red Hat/Red Hat Enterprise Linux 6v5cpe:/o:redhat:enterprise_linux:6
- Red Hat/Red Hat Enterprise Linux 7v5cpe:/o:redhat:enterprise_linux:7
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party Advisory
- access.redhat.com/errata/RHSA-2024:0135nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2024:0404nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2024:0569nvdThird Party Advisory
- access.redhat.com/security/cve/CVE-2023-3019nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2024:2135nvd
- cert-portal.siemens.com/productcert/html/ssa-577017.htmlnvd
- lists.debian.org/debian-lts-announce/2025/04/msg00042.htmlnvd
- security.netapp.com/advisory/ntap-20230831-0005/nvd
News mentions
1- Siemens Ruggedcom RoxCISA Alerts