Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-18030

Опубликовано: 23 янв. 2018
Источник: debian
EPSS Низкий

Описание

The cirrus_invalidate_region function in hw/display/cirrus_vga.c in Qemu allows local OS guest privileged users to cause a denial of service (out-of-bounds array access and QEMU process crash) via vectors related to negative pitch.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
qemufixed1:2.8+dfsg-4package
qemufixed1.1.2+dfsg-6+deb7u22wheezypackage
qemu-kvmremovedpackage
qemu-kvmfixed1.1.2+dfsg-6+deb7u21wheezypackage

Примечания

  • https://git.qemu.org/?p=qemu.git;a=commitdiff;h=f153b563f8cf121aebf5a2fff5f0110faf58ccb3

EPSS

Процентиль: 30%
0.00107
Низкий

Связанные уязвимости

CVSS3: 4.4
ubuntu
больше 7 лет назад

The cirrus_invalidate_region function in hw/display/cirrus_vga.c in Qemu allows local OS guest privileged users to cause a denial of service (out-of-bounds array access and QEMU process crash) via vectors related to negative pitch.

CVSS3: 3
redhat
больше 8 лет назад

The cirrus_invalidate_region function in hw/display/cirrus_vga.c in Qemu allows local OS guest privileged users to cause a denial of service (out-of-bounds array access and QEMU process crash) via vectors related to negative pitch.

CVSS3: 4.4
nvd
больше 7 лет назад

The cirrus_invalidate_region function in hw/display/cirrus_vga.c in Qemu allows local OS guest privileged users to cause a denial of service (out-of-bounds array access and QEMU process crash) via vectors related to negative pitch.

CVSS3: 4.4
github
около 3 лет назад

The cirrus_invalidate_region function in hw/display/cirrus_vga.c in Qemu allows local OS guest privileged users to cause a denial of service (out-of-bounds array access and QEMU process crash) via vectors related to negative pitch.

suse-cvrf
около 7 лет назад

Security update for kvm

EPSS

Процентиль: 30%
0.00107
Низкий