Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qxm2-g26p-5vjg

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

vmstate_xhci_event in hw/usb/hcd-xhci.c in QEMU 1.6.0 does not terminate the list with the VMSTATE_END_OF_LIST macro, which allows attackers to cause a denial of service (out-of-bounds access, infinite loop, and memory corruption) and possibly gain privileges via unspecified vectors.

vmstate_xhci_event in hw/usb/hcd-xhci.c in QEMU 1.6.0 does not terminate the list with the VMSTATE_END_OF_LIST macro, which allows attackers to cause a denial of service (out-of-bounds access, infinite loop, and memory corruption) and possibly gain privileges via unspecified vectors.

EPSS

Процентиль: 61%
0.00413
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 11 лет назад

vmstate_xhci_event in hw/usb/hcd-xhci.c in QEMU 1.6.0 does not terminate the list with the VMSTATE_END_OF_LIST macro, which allows attackers to cause a denial of service (out-of-bounds access, infinite loop, and memory corruption) and possibly gain privileges via unspecified vectors.

redhat
больше 11 лет назад

vmstate_xhci_event in hw/usb/hcd-xhci.c in QEMU 1.6.0 does not terminate the list with the VMSTATE_END_OF_LIST macro, which allows attackers to cause a denial of service (out-of-bounds access, infinite loop, and memory corruption) and possibly gain privileges via unspecified vectors.

nvd
больше 11 лет назад

vmstate_xhci_event in hw/usb/hcd-xhci.c in QEMU 1.6.0 does not terminate the list with the VMSTATE_END_OF_LIST macro, which allows attackers to cause a denial of service (out-of-bounds access, infinite loop, and memory corruption) and possibly gain privileges via unspecified vectors.

debian
больше 11 лет назад

vmstate_xhci_event in hw/usb/hcd-xhci.c in QEMU 1.6.0 does not termina ...

EPSS

Процентиль: 61%
0.00413
Низкий

Дефекты

CWE-119