Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-48jr-qqfg-77f3

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.9

Описание

In QEMU 4.2.0, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trigger an out-of-bounds access during an es1370_write() operation.

In QEMU 4.2.0, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trigger an out-of-bounds access during an es1370_write() operation.

EPSS

Процентиль: 27%
0.00098
Низкий

3.9 Low

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 3.9
ubuntu
больше 5 лет назад

In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trigger an out-of-bounds access during an es1370_write() operation.

CVSS3: 3.9
redhat
больше 5 лет назад

In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trigger an out-of-bounds access during an es1370_write() operation.

CVSS3: 3.9
nvd
больше 5 лет назад

In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trigger an out-of-bounds access during an es1370_write() operation.

CVSS3: 3.9
msrc
больше 5 лет назад

In QEMU 5.0.0 and earlier es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count which allows guest OS users to trigger an out-of-bounds access during an es1370_write() operation.

CVSS3: 3.9
debian
больше 5 лет назад

In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c ...

EPSS

Процентиль: 27%
0.00098
Низкий

3.9 Low

CVSS3

Дефекты

CWE-787