Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5cwv-6xqx-92m5

Опубликовано: 02 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

A flaw was found in the QEMU disk image utility (qemu-img) 'info' command. A specially crafted image file containing a json:{} value describing block devices in QMP could cause the qemu-img process on the host to consume large amounts of memory or CPU time, leading to denial of service or read/write to an existing external file.

A flaw was found in the QEMU disk image utility (qemu-img) 'info' command. A specially crafted image file containing a json:{} value describing block devices in QMP could cause the qemu-img process on the host to consume large amounts of memory or CPU time, leading to denial of service or read/write to an existing external file.

EPSS

Процентиль: 23%
0.00075
Низкий

7.8 High

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 1 года назад

A flaw was found in the QEMU disk image utility (qemu-img) 'info' command. A specially crafted image file containing a `json:{}` value describing block devices in QMP could cause the qemu-img process on the host to consume large amounts of memory or CPU time, leading to denial of service or read/write to an existing external file.

CVSS3: 7.8
redhat
около 1 года назад

A flaw was found in the QEMU disk image utility (qemu-img) 'info' command. A specially crafted image file containing a `json:{}` value describing block devices in QMP could cause the qemu-img process on the host to consume large amounts of memory or CPU time, leading to denial of service or read/write to an existing external file.

CVSS3: 7.8
nvd
около 1 года назад

A flaw was found in the QEMU disk image utility (qemu-img) 'info' command. A specially crafted image file containing a `json:{}` value describing block devices in QMP could cause the qemu-img process on the host to consume large amounts of memory or CPU time, leading to denial of service or read/write to an existing external file.

CVSS3: 7.8
msrc
3 месяца назад

Описание отсутствует

CVSS3: 7.8
debian
около 1 года назад

A flaw was found in the QEMU disk image utility (qemu-img) 'info' comm ...

EPSS

Процентиль: 23%
0.00075
Низкий

7.8 High

CVSS3

Дефекты

CWE-400