Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-g884-2vqj-jrfw

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors related to cursor.mask[] and cursor.image[] array sizes when processing a DEFINE_CURSOR svga command.

The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors related to cursor.mask[] and cursor.image[] array sizes when processing a DEFINE_CURSOR svga command.

EPSS

Процентиль: 23%
0.00075
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-129

Связанные уязвимости

CVSS3: 4.4
ubuntu
около 9 лет назад

The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors related to cursor.mask[] and cursor.image[] array sizes when processing a DEFINE_CURSOR svga command.

CVSS3: 3.5
redhat
больше 9 лет назад

The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors related to cursor.mask[] and cursor.image[] array sizes when processing a DEFINE_CURSOR svga command.

CVSS3: 4.4
nvd
около 9 лет назад

The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors related to cursor.mask[] and cursor.image[] array sizes when processing a DEFINE_CURSOR svga command.

CVSS3: 4.4
debian
около 9 лет назад

The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU (aka Q ...

suse-cvrf
около 9 лет назад

Security update for kvm

EPSS

Процентиль: 23%
0.00075
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-129