Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p6hq-65m2-r4jg

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes after setting the bank register, aka the "Dark Portal" issue.

The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes after setting the bank register, aka the "Dark Portal" issue.

EPSS

Процентиль: 26%
0.00086
Низкий

8.8 High

CVSS3

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 9 лет назад

The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes after setting the bank register, aka the "Dark Portal" issue.

CVSS3: 7.6
redhat
больше 9 лет назад

The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes after setting the bank register, aka the "Dark Portal" issue.

CVSS3: 8.8
nvd
больше 9 лет назад

The VGA module in QEMU improperly performs bounds checking on banked access to video memory, which allows local guest OS administrators to execute arbitrary code on the host by changing access modes after setting the bank register, aka the "Dark Portal" issue.

CVSS3: 8.8
debian
больше 9 лет назад

The VGA module in QEMU improperly performs bounds checking on banked a ...

oracle-oval
больше 9 лет назад

ELSA-2016-0997: qemu-kvm security update (IMPORTANT)

EPSS

Процентиль: 26%
0.00086
Низкий

8.8 High

CVSS3

Дефекты

CWE-119