Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-15289

Опубликовано: 16 окт. 2017
Источник: debian
EPSS Низкий

Описание

The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors related to dst calculation.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
qemufixed1:2.11+dfsg-1package
qemupostponedwheezypackage
qemu-kvmremovedpackage
qemu-kvmpostponedwheezypackage

Примечания

  • https://lists.gnu.org/archive/html/qemu-devel/2017-10/msg02557.html

  • Fixed by: https://git.qemu.org/gitweb.cgi?p=qemu.git;a=commit;h=eb38e1bc3740725ca29a535351de94107ec58d51

EPSS

Процентиль: 27%
0.00089
Низкий

Связанные уязвимости

CVSS3: 6
ubuntu
больше 7 лет назад

The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors related to dst calculation.

CVSS3: 4.4
redhat
больше 7 лет назад

The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors related to dst calculation.

CVSS3: 6
nvd
больше 7 лет назад

The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors related to dst calculation.

CVSS3: 6
github
около 3 лет назад

The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors related to dst calculation.

oracle-oval
больше 7 лет назад

ELSA-2018-0516: qemu-kvm security update (MODERATE)

EPSS

Процентиль: 27%
0.00089
Низкий