Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-9912

Опубликовано: 23 дек. 2016
Источник: nvd
CVSS3: 6.5
CVSS2: 4.9
EPSS Низкий

Описание

Quick Emulator (Qemu) built with the Virtio GPU Device emulator support is vulnerable to a memory leakage issue. It could occur while destroying gpu resource object in 'virtio_gpu_resource_destroy'. A guest user/process could use this flaw to leak host memory bytes, resulting in DoS for a host.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*
Версия до 2.8.1.1 (включая)

EPSS

Процентиль: 30%
0.00111
Низкий

6.5 Medium

CVSS3

4.9 Medium

CVSS2

Дефекты

CWE-772

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 9 лет назад

Quick Emulator (Qemu) built with the Virtio GPU Device emulator support is vulnerable to a memory leakage issue. It could occur while destroying gpu resource object in 'virtio_gpu_resource_destroy'. A guest user/process could use this flaw to leak host memory bytes, resulting in DoS for a host.

CVSS3: 3
redhat
около 9 лет назад

Quick Emulator (Qemu) built with the Virtio GPU Device emulator support is vulnerable to a memory leakage issue. It could occur while destroying gpu resource object in 'virtio_gpu_resource_destroy'. A guest user/process could use this flaw to leak host memory bytes, resulting in DoS for a host.

CVSS3: 6.5
debian
около 9 лет назад

Quick Emulator (Qemu) built with the Virtio GPU Device emulator suppor ...

CVSS3: 6.5
github
больше 3 лет назад

Quick Emulator (Qemu) built with the Virtio GPU Device emulator support is vulnerable to a memory leakage issue. It could occur while destroying gpu resource object in 'virtio_gpu_resource_destroy'. A guest user/process could use this flaw to leak host memory bytes, resulting in DoS for a host.

fstec
около 9 лет назад

Уязвимость эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю нарушить конфиденциальность, целостность и доступность

EPSS

Процентиль: 30%
0.00111
Низкий

6.5 Medium

CVSS3

4.9 Medium

CVSS2

Дефекты

CWE-772