Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-whmr-hj5c-pm9g

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

A vulnerability was found in DPDK versions 19.11 and above. A malicious container that has direct access to the vhost-user socket can keep sending VHOST_USER_GET_INFLIGHT_FD messages, causing a resource leak (file descriptors and virtual memory), which may result in a denial of service.

A vulnerability was found in DPDK versions 19.11 and above. A malicious container that has direct access to the vhost-user socket can keep sending VHOST_USER_GET_INFLIGHT_FD messages, causing a resource leak (file descriptors and virtual memory), which may result in a denial of service.

EPSS

Процентиль: 30%
0.00112
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 6
ubuntu
больше 5 лет назад

A vulnerability was found in DPDK versions 19.11 and above. A malicious container that has direct access to the vhost-user socket can keep sending VHOST_USER_GET_INFLIGHT_FD messages, causing a resource leak (file descriptors and virtual memory), which may result in a denial of service.

CVSS3: 4.4
redhat
больше 5 лет назад

A vulnerability was found in DPDK versions 19.11 and above. A malicious container that has direct access to the vhost-user socket can keep sending VHOST_USER_GET_INFLIGHT_FD messages, causing a resource leak (file descriptors and virtual memory), which may result in a denial of service.

CVSS3: 6
nvd
больше 5 лет назад

A vulnerability was found in DPDK versions 19.11 and above. A malicious container that has direct access to the vhost-user socket can keep sending VHOST_USER_GET_INFLIGHT_FD messages, causing a resource leak (file descriptors and virtual memory), which may result in a denial of service.

CVSS3: 6
debian
больше 5 лет назад

A vulnerability was found in DPDK versions 19.11 and above. A maliciou ...

CVSS3: 6
fstec
больше 5 лет назад

Уязвимость модуля vhost-user набора библиотек и драйверов для быстрой обработки пакетов dpdk, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 30%
0.00112
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-190