Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jmf2-6wvc-36fj

Опубликовано: 17 мар. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 3.2

Описание

A flaw was found in the vhost-vsock device of QEMU. In case of error, an invalid element was not detached from the virtqueue before freeing its memory, leading to memory leakage and other unexpected results. Affected QEMU versions <= 6.2.0.

A flaw was found in the vhost-vsock device of QEMU. In case of error, an invalid element was not detached from the virtqueue before freeing its memory, leading to memory leakage and other unexpected results. Affected QEMU versions <= 6.2.0.

EPSS

Процентиль: 4%
0.00018
Низкий

3.2 Low

CVSS3

Дефекты

CWE-772

Связанные уязвимости

CVSS3: 3.2
ubuntu
почти 4 года назад

A flaw was found in the vhost-vsock device of QEMU. In case of error, an invalid element was not detached from the virtqueue before freeing its memory, leading to memory leakage and other unexpected results. Affected QEMU versions <= 6.2.0.

CVSS3: 2.5
redhat
почти 4 года назад

A flaw was found in the vhost-vsock device of QEMU. In case of error, an invalid element was not detached from the virtqueue before freeing its memory, leading to memory leakage and other unexpected results. Affected QEMU versions <= 6.2.0.

CVSS3: 3.2
nvd
почти 4 года назад

A flaw was found in the vhost-vsock device of QEMU. In case of error, an invalid element was not detached from the virtqueue before freeing its memory, leading to memory leakage and other unexpected results. Affected QEMU versions <= 6.2.0.

CVSS3: 3.2
msrc
больше 1 года назад

Описание отсутствует

CVSS3: 3.2
debian
почти 4 года назад

A flaw was found in the vhost-vsock device of QEMU. In case of error, ...

EPSS

Процентиль: 4%
0.00018
Низкий

3.2 Low

CVSS3

Дефекты

CWE-772