Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qm9j-3g67-35f8

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5

Описание

An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-client sends a spec-compliant request that is near the boundary of maximum permitted request length. A remote nbd-client could use this flaw to crash the qemu-nbd server resulting in a denial of service.

An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-client sends a spec-compliant request that is near the boundary of maximum permitted request length. A remote nbd-client could use this flaw to crash the qemu-nbd server resulting in a denial of service.

EPSS

Процентиль: 74%
0.00841
Низкий

5 Medium

CVSS3

Дефекты

CWE-617

Связанные уязвимости

CVSS3: 5
ubuntu
больше 5 лет назад

An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-client sends a spec-compliant request that is near the boundary of maximum permitted request length. A remote nbd-client could use this flaw to crash the qemu-nbd server resulting in a denial of service.

CVSS3: 5
redhat
больше 5 лет назад

An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-client sends a spec-compliant request that is near the boundary of maximum permitted request length. A remote nbd-client could use this flaw to crash the qemu-nbd server resulting in a denial of service.

CVSS3: 5
nvd
больше 5 лет назад

An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-client sends a spec-compliant request that is near the boundary of maximum permitted request length. A remote nbd-client could use this flaw to crash the qemu-nbd server resulting in a denial of service.

CVSS3: 5
msrc
больше 5 лет назад

An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-client sends a spec-compliant request that is near the boundary of maximum permitted request length. A remote nbd-client could use this flaw to crash the qemu-nbd server resulting in a denial of service.

CVSS3: 5
debian
больше 5 лет назад

An assertion failure issue was found in the Network Block Device(NBD) ...

EPSS

Процентиль: 74%
0.00841
Низкий

5 Medium

CVSS3

Дефекты

CWE-617