[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2020-13361":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T20:55:29.923Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":20,"aliases":21,"duplicate_of":9,"upstream":22,"downstream":23,"duplicates":60,"related":61,"reserved_at":9,"published_at":73,"modified_at":74,"state":75,"summary":76,"references_raw":84,"kevs":137,"epss":138,"epss_history":141,"metrics":406,"affected":417},"CVE-2020-13361","In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trigger an out-of-bounds access during an es1370_write() operation.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-787","Out-of-bounds Write","The product writes data past the end, or before the beginning, of the intended buffer.","weakness","Draft","Base","High",[],[],[],[],[24,26,28,30,32,34,36,38,40,42,44,46,48,50,52,54,56,58],{"_key":25},"OPENSUSE-SU-2024:11287-1",{"_key":27},"SUSE-SU-2020:2015-1",{"_key":29},"SUSE-SU-2020:2743-1",{"_key":31},"SUSE-SU-2021:1240-1",{"_key":33},"SUSE-SU-2021:1241-1",{"_key":35},"SUSE-SU-2021:1244-1",{"_key":37},"SUSE-SU-2021:1245-1",{"_key":39},"SUSE-SU-2021:1305-1",{"_key":41},"SUSE-SU-2021:14704-1",{"_key":43},"SUSE-SU-2021:14706-1",{"_key":45},"UBUNTU-CVE-2020-13361",{"_key":47},"USN-4467-2",{"_key":49},"OPENSUSE-SU-2020:1108-1",{"_key":51},"DLA-2262-1",{"_key":53},"DLA-2288-1",{"_key":55},"DSA-4728-1",{"_key":57},"USN-4467-1",{"_key":59},"DEBIAN-CVE-2020-13361",[],[62,63,64,65,66,67,68,69,70,71,72],{"_key":25},{"_key":27},{"_key":29},{"_key":31},{"_key":33},{"_key":35},{"_key":37},{"_key":39},{"_key":41},{"_key":43},{"_key":49},"2020-05-28T13:42:06.000Z","2024-08-04T12:18:17.617Z","Modified",{"cisa_kev":77,"cisa_ransomware":77,"cisa_vendor":9,"epss_severity":78,"epss_score":79,"severity":78,"severity_score":80,"severity_version":81,"severity_source":82,"severity_vector":83,"severity_status":75},false,"low",0.0008,3.9,"v3.1","nvd","CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:C/C:N/I:L/A:L",[85,93,99,103,107,112,118,122,127,132],{"url":86,"sources":87,"tags":89},"https://lists.gnu.org/archive/html/qemu-devel/2020-05/msg03983.html",[88,82],"cve.org",[90,91,92],"X Refsource MISC","Patch","Third Party Advisory",{"url":94,"sources":95,"tags":96},"http://www.openwall.com/lists/oss-security/2020/05/28/1",[88,82],[97,98,91,92],"X Refsource CONFIRM","Mailing List",{"url":100,"sources":101,"tags":102},"https://security-tracker.debian.org/tracker/CVE-2020-13361",[88,82],[90,92],{"url":104,"sources":105,"tags":106},"https://security.netapp.com/advisory/ntap-20200608-0003/",[88,82],[97,92],{"url":108,"sources":109,"tags":110},"https://lists.debian.org/debian-lts-announce/2020/06/msg00032.html",[88,82],[98,111,92],"X Refsource MLIST",{"url":113,"sources":114,"tags":115},"https://www.debian.org/security/2020/dsa-4728",[88,82],[116,117,92],"Vendor Advisory","X Refsource DEBIAN",{"url":119,"sources":120,"tags":121},"https://lists.debian.org/debian-lts-announce/2020/07/msg00020.html",[88,82],[98,111,92],{"url":123,"sources":124,"tags":125},"http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00086.html",[88,82],[116,126,98,92],"X Refsource SUSE",{"url":128,"sources":129,"tags":130},"https://usn.ubuntu.com/4467-1/",[88,82],[116,131,92],"X Refsource UBUNTU",{"url":133,"sources":134,"tags":135},"https://security.gentoo.org/glsa/202011-09",[88,82],[116,136,92],"X Refsource GENTOO",[],{"date":139,"score":79,"percentile":140},"2026-06-04",0.23704,[142,146,149,152,155,158,161,164,167,170,173,176,179,182,185,189,192,195,198,200,202,205,208,210,213,216,219,223,226,229,232,235,238,240,243,246,249,252,255,258,261,264,267,270,273,276,279,282,285,288,291,294,297,300,304,307,310,313,315,318,320,323,326,329,331,334,337,339,342,345,348,351,354,356,359,361,364,367,370,373,376,379,382,385,388,391,394,397,400,403],{"date":143,"score":144,"percentile":145},"2025-11-04",0.00102,0.28704,{"date":147,"score":144,"percentile":148},"2025-11-05",0.28674,{"date":150,"score":144,"percentile":151},"2025-11-06",0.28687,{"date":153,"score":144,"percentile":154},"2025-11-07",0.28684,{"date":156,"score":144,"percentile":157},"2025-11-08",0.28686,{"date":159,"score":144,"percentile":160},"2025-11-09",0.28657,{"date":162,"score":144,"percentile":163},"2025-11-10",0.28637,{"date":165,"score":144,"percentile":166},"2025-11-11",0.28661,{"date":168,"score":144,"percentile":169},"2025-11-12",0.28707,{"date":171,"score":144,"percentile":172},"2025-11-13",0.28718,{"date":174,"score":144,"percentile":175},"2025-11-14",0.28711,{"date":177,"score":144,"percentile":178},"2025-11-15",0.28708,{"date":180,"score":144,"percentile":181},"2025-11-16",0.28677,{"date":183,"score":144,"percentile":184},"2025-11-17",0.2866,{"date":186,"score":187,"percentile":188},"2025-11-18",0.00103,0.24209,{"date":190,"score":187,"percentile":191},"2025-11-19",0.24236,{"date":193,"score":187,"percentile":194},"2025-11-20",0.2425,{"date":196,"score":144,"percentile":197},"2025-11-21",0.28697,{"date":199,"score":144,"percentile":169},"2025-11-22",{"date":201,"score":144,"percentile":148},"2025-11-23",{"date":203,"score":144,"percentile":204},"2025-11-24",0.28648,{"date":206,"score":144,"percentile":207},"2025-11-25",0.28644,{"date":209,"score":144,"percentile":207},"2025-11-26",{"date":211,"score":144,"percentile":212},"2025-11-27",0.28654,{"date":214,"score":144,"percentile":215},"2025-11-28",0.28627,{"date":217,"score":144,"percentile":218},"2025-11-29",0.28616,{"date":220,"score":221,"percentile":222},"2025-11-30",0.00098,0.27411,{"date":224,"score":221,"percentile":225},"2025-12-01",0.27466,{"date":227,"score":221,"percentile":228},"2025-12-02",0.27489,{"date":230,"score":221,"percentile":231},"2025-12-03",0.27496,{"date":233,"score":221,"percentile":234},"2025-12-04",0.27427,{"date":236,"score":221,"percentile":237},"2025-12-05",0.27462,{"date":239,"score":221,"percentile":237},"2025-12-06",{"date":241,"score":221,"percentile":242},"2025-12-07",0.27428,{"date":244,"score":221,"percentile":245},"2025-12-08",0.27441,{"date":247,"score":221,"percentile":248},"2025-12-09",0.27498,{"date":250,"score":221,"percentile":251},"2025-12-10",0.27572,{"date":253,"score":221,"percentile":254},"2025-12-11",0.27603,{"date":256,"score":221,"percentile":257},"2025-12-12",0.2762,{"date":259,"score":221,"percentile":260},"2025-12-13",0.27618,{"date":262,"score":221,"percentile":263},"2025-12-14",0.27585,{"date":265,"score":221,"percentile":266},"2025-12-15",0.27553,{"date":268,"score":221,"percentile":269},"2025-12-16",0.27567,{"date":271,"score":221,"percentile":272},"2025-12-17",0.27626,{"date":274,"score":221,"percentile":275},"2025-12-18",0.27679,{"date":277,"score":221,"percentile":278},"2025-12-19",0.27693,{"date":280,"score":221,"percentile":281},"2025-12-20",0.27664,{"date":283,"score":221,"percentile":284},"2025-12-21",0.27619,{"date":286,"score":221,"percentile":287},"2025-12-22",0.27586,{"date":289,"score":221,"percentile":290},"2025-12-23",0.27555,{"date":292,"score":221,"percentile":293},"2025-12-24",0.27564,{"date":295,"score":221,"percentile":296},"2025-12-25",0.2764,{"date":298,"score":221,"percentile":299},"2025-12-26",0.27633,{"date":301,"score":302,"percentile":303},"2025-12-27",0.00101,0.28639,{"date":305,"score":221,"percentile":306},"2025-12-28",0.27552,{"date":308,"score":221,"percentile":309},"2025-12-29",0.27523,{"date":311,"score":221,"percentile":312},"2025-12-30",0.27519,{"date":314,"score":221,"percentile":287},"2025-12-31",{"date":316,"score":221,"percentile":317},"2026-01-01",0.27699,{"date":319,"score":221,"percentile":317},"2026-01-02",{"date":321,"score":221,"percentile":322},"2026-01-03",0.27678,{"date":324,"score":221,"percentile":325},"2026-01-04",0.27568,{"date":327,"score":221,"percentile":328},"2026-01-05",0.27558,{"date":330,"score":221,"percentile":325},"2026-01-06",{"date":332,"score":221,"percentile":333},"2026-01-07",0.27595,{"date":335,"score":221,"percentile":336},"2026-01-08",0.27637,{"date":338,"score":221,"percentile":272},"2026-01-09",{"date":340,"score":221,"percentile":341},"2026-01-10",0.27606,{"date":343,"score":221,"percentile":344},"2026-01-11",0.27587,{"date":346,"score":221,"percentile":347},"2026-01-12",0.27539,{"date":349,"score":221,"percentile":350},"2026-01-13",0.27518,{"date":352,"score":221,"percentile":353},"2026-01-14",0.27562,{"date":355,"score":221,"percentile":328},"2026-01-15",{"date":357,"score":221,"percentile":358},"2026-01-16",0.27591,{"date":360,"score":221,"percentile":333},"2026-01-17",{"date":362,"score":221,"percentile":363},"2026-01-18",0.27543,{"date":365,"score":221,"percentile":366},"2026-01-19",0.27503,{"date":368,"score":221,"percentile":369},"2026-01-20",0.27485,{"date":371,"score":221,"percentile":372},"2026-01-21",0.27432,{"date":374,"score":221,"percentile":375},"2026-01-22",0.27406,{"date":377,"score":221,"percentile":378},"2026-01-23",0.27478,{"date":380,"score":221,"percentile":381},"2026-01-24",0.27471,{"date":383,"score":221,"percentile":384},"2026-01-25",0.27398,{"date":386,"score":221,"percentile":387},"2026-01-26",0.2731,{"date":389,"score":221,"percentile":390},"2026-01-27",0.2729,{"date":392,"score":221,"percentile":393},"2026-01-28",0.27279,{"date":395,"score":221,"percentile":396},"2026-01-29",0.2723,{"date":398,"score":221,"percentile":399},"2026-01-30",0.27224,{"date":401,"score":221,"percentile":402},"2026-01-31",0.27226,{"date":404,"score":221,"percentile":405},"2026-02-01",0.27285,[407],{"source":82,"cvss_v2_0":408,"cvss_v3_0":9,"cvss_v3_1":413,"cvss_v4_0":9},{"baseScore":409,"baseSeverity":9,"vectorString":410,"impactScore":411,"exploitabilityScore":412},3.3,"AV:L/AC:M/Au:N/C:N/I:P/A:P",4.9,3.4,{"baseScore":80,"baseSeverity":414,"vectorString":83,"impactScore":415,"exploitabilityScore":416},"LOW",4.5,2.1,[418,431,442,448],{"ecosystem":9,"name":419,"vendor":420,"product":421,"cpe_part":422,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":423},"ubuntu linux","canonical","ubuntu_linux","o",[424,427,429],{"version":425,"is_range":77,"range_type":426,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"16.04","cpe",{"version":428,"is_range":77,"range_type":426,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.04",{"version":430,"is_range":77,"range_type":426,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"20.04",{"ecosystem":9,"name":432,"vendor":433,"product":434,"cpe_part":422,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":435},"debian linux","debian","debian_linux",[436,438,440],{"version":437,"is_range":77,"range_type":426,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0",{"version":439,"is_range":77,"range_type":426,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0",{"version":441,"is_range":77,"range_type":426,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"10.0",{"ecosystem":9,"name":443,"vendor":444,"product":443,"cpe_part":422,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":445},"leap","opensuse",[446],{"version":447,"is_range":77,"range_type":426,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.2",{"ecosystem":9,"name":449,"vendor":449,"product":449,"cpe_part":450,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":451},"qemu","a",[452],{"version":453,"is_range":454,"range_type":426,"version_start":9,"version_start_type":9,"version_end":455,"version_end_type":456,"fixed_in":9},"lte5.0.0",true,"5.0.0","including"]