Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m2wj-gq82-h93m

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The host_from_stream_offset function in arch_init.c in QEMU, when loading RAM during migration, allows remote attackers to execute arbitrary code via a crafted (1) offset or (2) length value in savevm data.

The host_from_stream_offset function in arch_init.c in QEMU, when loading RAM during migration, allows remote attackers to execute arbitrary code via a crafted (1) offset or (2) length value in savevm data.

EPSS

Процентиль: 85%
0.02455
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 10 лет назад

The host_from_stream_offset function in arch_init.c in QEMU, when loading RAM during migration, allows remote attackers to execute arbitrary code via a crafted (1) offset or (2) length value in savevm data.

redhat
почти 11 лет назад

The host_from_stream_offset function in arch_init.c in QEMU, when loading RAM during migration, allows remote attackers to execute arbitrary code via a crafted (1) offset or (2) length value in savevm data.

nvd
больше 10 лет назад

The host_from_stream_offset function in arch_init.c in QEMU, when loading RAM during migration, allows remote attackers to execute arbitrary code via a crafted (1) offset or (2) length value in savevm data.

debian
больше 10 лет назад

The host_from_stream_offset function in arch_init.c in QEMU, when load ...

suse-cvrf
больше 10 лет назад

Security update for qemu

EPSS

Процентиль: 85%
0.02455
Низкий

Дефекты

CWE-20