[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2020-1711":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T14:53:31.930Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":30,"aliases":31,"duplicate_of":9,"upstream":32,"downstream":33,"duplicates":86,"related":87,"reserved_at":9,"published_at":97,"modified_at":98,"state":99,"summary":100,"references_raw":109,"kevs":171,"epss":172,"epss_history":175,"metrics":441,"affected":457},"CVE-2020-1711","An out-of-bounds heap buffer access flaw was found in the way the iSCSI Block driver in QEMU versions 2.12.0 before 4.2.1 handled a response coming from an iSCSI server while checking the status of a Logical Address Block (LBA) in an iscsi_co_block_status() routine. A remote user could use this flaw to crash the QEMU process, resulting in a denial of service or potential execution of arbitrary code with privileges of the QEMU process on the host.",null,[11,20],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-787","Out-of-bounds Write","The product writes data past the end, or before the beginning, of the intended buffer.","weakness","Draft","Base","High",[],{"_key":21,"id":21,"name":22,"description":23,"type":15,"status":16,"abstraction":24,"likelihood_of_exploit":18,"capec":25},"CWE-122","Heap-based Buffer Overflow","A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().","Variant",[26],{"id":27,"name":28,"techniques":29},"CAPEC-92","Forced Integer Overflow",[],[],[],[],[34,36,38,40,42,44,46,48,50,52,54,56,58,60,62,64,66,68,70,72,74,76,78,80,82,84],{"_key":35},"SUSE-SU-2020:1501-1",{"_key":37},"RHSA-2020:0669",{"_key":39},"RHSA-2020:0731",{"_key":41},"RHSA-2020:0773",{"_key":43},"RHSA-2020:1150",{"_key":45},"RHSA-2020:1216",{"_key":47},"RHSA-2020:1296",{"_key":49},"RHSA-2020:1300",{"_key":51},"RHSA-2020:1352",{"_key":53},"RHSA-2020:1358",{"_key":55},"RHSA-2020:1505",{"_key":57},"RHSA-2020:2472",{"_key":59},"OPENSUSE-SU-2024:11287-1",{"_key":61},"SUSE-SU-2020:0844-1",{"_key":63},"SUSE-SU-2020:0845-1",{"_key":65},"SUSE-SU-2020:1514-1",{"_key":67},"SUSE-SU-2020:1523-1",{"_key":69},"SUSE-SU-2020:1526-1",{"_key":71},"SUSE-SU-2020:1538-1",{"_key":73},"UBUNTU-CVE-2020-1711",{"_key":75},"OPENSUSE-SU-2020:0468-1",{"_key":77},"DLA-2144-1",{"_key":79},"DLA-2373-1",{"_key":81},"USN-4283-1",{"_key":83},"DEBIAN-CVE-2020-1711",{"_key":85},"RHSA-2020:0730",[],[88,89,90,91,92,93,94,95,96],{"_key":35},{"_key":59},{"_key":61},{"_key":63},{"_key":65},{"_key":67},{"_key":69},{"_key":71},{"_key":75},"2020-02-11T19:42:48.000Z","2024-08-04T06:46:30.807Z","Modified",{"cisa_kev":101,"cisa_ransomware":101,"cisa_vendor":9,"epss_severity":102,"epss_score":103,"severity":104,"severity_score":105,"severity_version":106,"severity_source":107,"severity_vector":108,"severity_status":99},false,"low",0.00559,"high",7.7,"v3.1","cve.org","CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:H",[110,119,125,129,135,140,144,148,152,157,162,167],{"url":111,"sources":112,"tags":114},"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-1711",[107,113],"nvd",[115,116,117,118],"X Refsource CONFIRM","Issue Tracking","Patch","Third Party Advisory",{"url":120,"sources":121,"tags":122},"https://lists.gnu.org/archive/html/qemu-devel/2020-01/msg05535.html",[107,113],[123,124,117,118],"X Refsource MISC","Mailing List",{"url":126,"sources":127,"tags":128},"https://www.openwall.com/lists/oss-security/2020/01/23/3",[107,113],[123,124,118],{"url":130,"sources":131,"tags":132},"https://usn.ubuntu.com/4283-1/",[107,113],[133,134,118],"Vendor Advisory","X Refsource UBUNTU",{"url":136,"sources":137,"tags":138},"https://access.redhat.com/errata/RHSA-2020:0669",[107,113],[133,139,118],"X Refsource REDHAT",{"url":141,"sources":142,"tags":143},"https://access.redhat.com/errata/RHSA-2020:0773",[107,113],[133,139,118],{"url":145,"sources":146,"tags":147},"https://access.redhat.com/errata/RHSA-2020:0730",[107,113],[133,139,118],{"url":149,"sources":150,"tags":151},"https://access.redhat.com/errata/RHSA-2020:0731",[107,113],[133,139,118],{"url":153,"sources":154,"tags":155},"https://lists.debian.org/debian-lts-announce/2020/03/msg00017.html",[107,113],[124,156,118],"X Refsource MLIST",{"url":158,"sources":159,"tags":160},"http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00007.html",[107,113],[133,161,118],"X Refsource SUSE",{"url":163,"sources":164,"tags":165},"https://security.gentoo.org/glsa/202005-02",[107,113],[133,166,118],"X Refsource GENTOO",{"url":168,"sources":169,"tags":170},"https://lists.debian.org/debian-lts-announce/2020/09/msg00013.html",[107,113],[124,156,118],[],{"date":173,"score":103,"percentile":174},"2026-06-04",0.68603,[176,180,183,186,188,191,194,197,200,203,206,209,212,215,219,223,226,229,232,235,238,241,244,247,249,252,255,258,261,264,267,270,273,276,279,282,285,288,291,294,297,299,302,305,308,311,314,317,320,323,326,329,332,335,338,341,344,347,350,353,356,359,361,364,367,370,373,376,379,382,385,388,391,394,397,400,403,406,408,411,413,416,419,422,424,426,429,432,435,438],{"date":177,"score":178,"percentile":179},"2025-11-04",0.00758,0.72485,{"date":181,"score":178,"percentile":182},"2025-11-05",0.72472,{"date":184,"score":178,"percentile":185},"2025-11-06",0.72469,{"date":187,"score":178,"percentile":179},"2025-11-07",{"date":189,"score":178,"percentile":190},"2025-11-08",0.72482,{"date":192,"score":178,"percentile":193},"2025-11-09",0.72474,{"date":195,"score":178,"percentile":196},"2025-11-10",0.72466,{"date":198,"score":178,"percentile":199},"2025-11-11",0.72471,{"date":201,"score":178,"percentile":202},"2025-11-12",0.7249,{"date":204,"score":178,"percentile":205},"2025-11-13",0.72498,{"date":207,"score":178,"percentile":208},"2025-11-14",0.72504,{"date":210,"score":178,"percentile":211},"2025-11-15",0.72505,{"date":213,"score":178,"percentile":214},"2025-11-16",0.725,{"date":216,"score":217,"percentile":218},"2025-11-17",0.00493,0.64813,{"date":220,"score":221,"percentile":222},"2025-11-18",0.00812,0.72117,{"date":224,"score":221,"percentile":225},"2025-11-19",0.72125,{"date":227,"score":221,"percentile":228},"2025-11-20",0.72133,{"date":230,"score":217,"percentile":231},"2025-11-21",0.64826,{"date":233,"score":217,"percentile":234},"2025-11-22",0.64832,{"date":236,"score":217,"percentile":237},"2025-11-23",0.64818,{"date":239,"score":217,"percentile":240},"2025-11-24",0.64803,{"date":242,"score":217,"percentile":243},"2025-11-25",0.64806,{"date":245,"score":217,"percentile":246},"2025-11-26",0.64807,{"date":248,"score":217,"percentile":218},"2025-11-27",{"date":250,"score":217,"percentile":251},"2025-11-28",0.64798,{"date":253,"score":217,"percentile":254},"2025-11-29",0.64773,{"date":256,"score":217,"percentile":257},"2025-11-30",0.64767,{"date":259,"score":217,"percentile":260},"2025-12-01",0.64929,{"date":262,"score":217,"percentile":263},"2025-12-02",0.64947,{"date":265,"score":217,"percentile":266},"2025-12-03",0.64948,{"date":268,"score":217,"percentile":269},"2025-12-04",0.64772,{"date":271,"score":217,"percentile":272},"2025-12-05",0.64787,{"date":274,"score":217,"percentile":275},"2025-12-06",0.64789,{"date":277,"score":217,"percentile":278},"2025-12-07",0.64786,{"date":280,"score":217,"percentile":281},"2025-12-08",0.64792,{"date":283,"score":217,"percentile":284},"2025-12-09",0.64825,{"date":286,"score":217,"percentile":287},"2025-12-10",0.6487,{"date":289,"score":217,"percentile":290},"2025-12-11",0.64888,{"date":292,"score":217,"percentile":293},"2025-12-12",0.64904,{"date":295,"score":217,"percentile":296},"2025-12-13",0.64911,{"date":298,"score":217,"percentile":296},"2025-12-14",{"date":300,"score":217,"percentile":301},"2025-12-15",0.64906,{"date":303,"score":217,"percentile":304},"2025-12-16",0.64921,{"date":306,"score":217,"percentile":307},"2025-12-17",0.64933,{"date":309,"score":217,"percentile":310},"2025-12-18",0.64969,{"date":312,"score":217,"percentile":313},"2025-12-19",0.64984,{"date":315,"score":217,"percentile":316},"2025-12-20",0.64981,{"date":318,"score":217,"percentile":319},"2025-12-21",0.6497,{"date":321,"score":217,"percentile":322},"2025-12-22",0.64963,{"date":324,"score":217,"percentile":325},"2025-12-23",0.64966,{"date":327,"score":217,"percentile":328},"2025-12-24",0.64972,{"date":330,"score":217,"percentile":331},"2025-12-25",0.64998,{"date":333,"score":217,"percentile":334},"2025-12-26",0.64999,{"date":336,"score":217,"percentile":337},"2025-12-27",0.65055,{"date":339,"score":217,"percentile":340},"2025-12-28",0.64974,{"date":342,"score":217,"percentile":343},"2025-12-29",0.64962,{"date":345,"score":217,"percentile":346},"2025-12-30",0.64979,{"date":348,"score":217,"percentile":349},"2025-12-31",0.65004,{"date":351,"score":217,"percentile":352},"2026-01-01",0.65191,{"date":354,"score":217,"percentile":355},"2026-01-02",0.65178,{"date":357,"score":217,"percentile":358},"2026-01-03",0.6518,{"date":360,"score":217,"percentile":349},"2026-01-04",{"date":362,"score":217,"percentile":363},"2026-01-05",0.64996,{"date":365,"score":217,"percentile":366},"2026-01-06",0.64995,{"date":368,"score":217,"percentile":369},"2026-01-07",0.65017,{"date":371,"score":217,"percentile":372},"2026-01-08",0.65035,{"date":374,"score":103,"percentile":375},"2026-01-09",0.67623,{"date":377,"score":103,"percentile":378},"2026-01-10",0.67625,{"date":380,"score":103,"percentile":381},"2026-01-11",0.67616,{"date":383,"score":103,"percentile":384},"2026-01-12",0.67604,{"date":386,"score":103,"percentile":387},"2026-01-13",0.67599,{"date":389,"score":103,"percentile":390},"2026-01-14",0.67636,{"date":392,"score":103,"percentile":393},"2026-01-15",0.67639,{"date":395,"score":103,"percentile":396},"2026-01-16",0.67656,{"date":398,"score":103,"percentile":399},"2026-01-17",0.67644,{"date":401,"score":103,"percentile":402},"2026-01-18",0.67632,{"date":404,"score":103,"percentile":405},"2026-01-19",0.67615,{"date":407,"score":103,"percentile":378},"2026-01-20",{"date":409,"score":103,"percentile":410},"2026-01-21",0.67633,{"date":412,"score":103,"percentile":399},"2026-01-22",{"date":414,"score":103,"percentile":415},"2026-01-23",0.67674,{"date":417,"score":103,"percentile":418},"2026-01-24",0.67684,{"date":420,"score":103,"percentile":421},"2026-01-25",0.67653,{"date":423,"score":103,"percentile":399},"2026-01-26",{"date":425,"score":103,"percentile":421},"2026-01-27",{"date":427,"score":103,"percentile":428},"2026-01-28",0.67664,{"date":430,"score":103,"percentile":431},"2026-01-29",0.6766,{"date":433,"score":103,"percentile":434},"2026-01-30",0.67668,{"date":436,"score":103,"percentile":437},"2026-01-31",0.67671,{"date":439,"score":103,"percentile":440},"2026-02-01",0.67818,[442,447],{"source":107,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":443,"cvss_v4_0":9},{"baseScore":105,"baseSeverity":444,"vectorString":108,"impactScore":445,"exploitabilityScore":446},"HIGH",8.8,4.6,{"source":113,"cvss_v2_0":448,"cvss_v3_0":9,"cvss_v3_1":453,"cvss_v4_0":9},{"baseScore":449,"baseSeverity":9,"vectorString":450,"impactScore":451,"exploitabilityScore":452},6,"AV:N/AC:M/Au:S/C:P/I:P/A:P",6.4,6.8,{"baseScore":449,"baseSeverity":454,"vectorString":455,"impactScore":456,"exploitabilityScore":446},"MEDIUM","CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:L",6.2,[458,469,475,486,492,500],{"ecosystem":9,"name":459,"vendor":460,"product":461,"cpe_part":462,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":463},"debian linux","debian","debian_linux","o",[464,467],{"version":465,"is_range":101,"range_type":466,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0","cpe",{"version":468,"is_range":101,"range_type":466,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0",{"ecosystem":9,"name":470,"vendor":471,"product":470,"cpe_part":462,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":472},"leap","opensuse",[473],{"version":474,"is_range":101,"range_type":466,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"15.1",{"ecosystem":9,"name":476,"vendor":476,"product":476,"cpe_part":477,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":478},"qemu","a",[479],{"version":480,"is_range":481,"range_type":466,"version_start":482,"version_start_type":483,"version_end":484,"version_end_type":485,"fixed_in":9},"gte2.12.0_lt4.2.1",true,"2.12.0","including","4.2.1","excluding",{"ecosystem":9,"name":487,"vendor":488,"product":476,"cpe_part":477,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":489},"QEMU","red hat",[490],{"version":491,"is_range":101,"range_type":107,"version_start":491,"version_start_type":483,"version_end":491,"version_end_type":483,"fixed_in":9},"All qemu versions 2.12.0 before 4.2.1",{"ecosystem":9,"name":493,"vendor":494,"product":495,"cpe_part":462,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":496},"enterprise linux","redhat","enterprise_linux",[497,499],{"version":498,"is_range":101,"range_type":466,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.0",{"version":465,"is_range":101,"range_type":466,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":501,"vendor":494,"product":501,"cpe_part":477,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":502},"openstack",[503,505],{"version":504,"is_range":101,"range_type":466,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"10",{"version":506,"is_range":101,"range_type":466,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"13"]