Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6457-73j6-h3qg

Опубликовано: 30 мар. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

A flaw was found in virtio-win. The RhelDoUnMap() function does not properly validate the number of descriptors provided by a user during an unmap request. A local user could exploit this input validation vulnerability by supplying an excessive number of descriptors, leading to a buffer overrun. This can cause a system crash, resulting in a Denial of Service (DoS).

A flaw was found in virtio-win. The RhelDoUnMap() function does not properly validate the number of descriptors provided by a user during an unmap request. A local user could exploit this input validation vulnerability by supplying an excessive number of descriptors, leading to a buffer overrun. This can cause a system crash, resulting in a Denial of Service (DoS).

EPSS

Процентиль: 2%
0.00112
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-120

Связанные уязвимости

CVSS3: 6.7
redhat
4 месяца назад

A flaw was found in virtio-win. The `RhelDoUnMap()` function does not properly validate the number of descriptors provided by a user during an unmap request. A local user could exploit this input validation vulnerability by supplying an excessive number of descriptors, leading to a buffer overrun. This can cause a system crash, resulting in a Denial of Service (DoS).

CVSS3: 6.7
nvd
4 месяца назад

A flaw was found in virtio-win. The `RhelDoUnMap()` function does not properly validate the number of descriptors provided by a user during an unmap request. A local user could exploit this input validation vulnerability by supplying an excessive number of descriptors, leading to a buffer overrun. This can cause a system crash, resulting in a Denial of Service (DoS).

EPSS

Процентиль: 2%
0.00112
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-120