Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5355-6wp2-29w4

Опубликовано: 19 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6

Описание

An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c does not set NumVFs to PCI_SRIOV_TOTAL_VF, and thus interaction with hw/nvme/ctrl.c is mishandled.

An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c does not set NumVFs to PCI_SRIOV_TOTAL_VF, and thus interaction with hw/nvme/ctrl.c is mishandled.

EPSS

Процентиль: 12%
0.00041
Низкий

6 Medium

CVSS3

Дефекты

CWE-787

Связанные уязвимости

CVSS3: 6
ubuntu
около 2 лет назад

An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c does not set NumVFs to PCI_SRIOV_TOTAL_VF, and thus interaction with hw/nvme/ctrl.c is mishandled.

CVSS3: 4.7
redhat
около 2 лет назад

An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c does not set NumVFs to PCI_SRIOV_TOTAL_VF, and thus interaction with hw/nvme/ctrl.c is mishandled.

CVSS3: 6
nvd
около 2 лет назад

An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c does not set NumVFs to PCI_SRIOV_TOTAL_VF, and thus interaction with hw/nvme/ctrl.c is mishandled.

CVSS3: 6
msrc
10 месяцев назад

An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c does not set NumVFs to PCI_SRIOV_TOTAL_VF, and thus interaction with hw/nvme/ctrl.c is mishandled.

CVSS3: 6
debian
около 2 лет назад

An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in h ...

EPSS

Процентиль: 12%
0.00041
Низкий

6 Medium

CVSS3

Дефекты

CWE-787