Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-0146

Опубликовано: 10 авг. 2017
Источник: nvd
CVSS3: 5.5
CVSS2: 1.9
EPSS Низкий

Описание

The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 and 2.x before 2.0.0 allows local users to cause a denial of service (NULL pointer dereference) via a crafted image which causes an error, related to the initialization of the snapshot_offset and nb_snapshots fields.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*
Версия до 1.7.1 (включая)
cpe:2.3:a:qemu:qemu:2.0.0:rc0:*:*:*:*:*:*
cpe:2.3:a:qemu:qemu:2.0.0:rc1:*:*:*:*:*:*
cpe:2.3:a:qemu:qemu:2.0.0:rc2:*:*:*:*:*:*
cpe:2.3:a:qemu:qemu:2.0.0:rc3:*:*:*:*:*:*

EPSS

Процентиль: 19%
0.00059
Низкий

5.5 Medium

CVSS3

1.9 Low

CVSS2

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 8 лет назад

The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 and 2.x before 2.0.0 allows local users to cause a denial of service (NULL pointer dereference) via a crafted image which causes an error, related to the initialization of the snapshot_offset and nb_snapshots fields.

redhat
около 11 лет назад

The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 and 2.x before 2.0.0 allows local users to cause a denial of service (NULL pointer dereference) via a crafted image which causes an error, related to the initialization of the snapshot_offset and nb_snapshots fields.

CVSS3: 5.5
debian
почти 8 лет назад

The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 an ...

CVSS3: 5.5
github
около 3 лет назад

The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 and 2.x before 2.0.0 allows local users to cause a denial of service (NULL pointer dereference) via a crafted image which causes an error, related to the initialization of the snapshot_offset and nb_snapshots fields.

oracle-oval
около 11 лет назад

ELSA-2014-0420: qemu-kvm security update (MODERATE)

EPSS

Процентиль: 19%
0.00059
Низкий

5.5 Medium

CVSS3

1.9 Low

CVSS2

Дефекты

CWE-476