Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-9375

Опубликовано: 16 июн. 2017
Источник: nvd
CVSS3: 5.5
CVSS2: 1.9
EPSS Низкий

Описание

QEMU (aka Quick Emulator), when built with USB xHCI controller emulator support, allows local guest OS privileged users to cause a denial of service (infinite recursive call) via vectors involving control transfer descriptors sequencing.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*
Версия до 2.8.1.1 (включая)
Конфигурация 2

Одно из

cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

EPSS

Процентиль: 28%
0.00099
Низкий

5.5 Medium

CVSS3

1.9 Low

CVSS2

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 8 лет назад

QEMU (aka Quick Emulator), when built with USB xHCI controller emulator support, allows local guest OS privileged users to cause a denial of service (infinite recursive call) via vectors involving control transfer descriptors sequencing.

CVSS3: 3
redhat
около 9 лет назад

QEMU (aka Quick Emulator), when built with USB xHCI controller emulator support, allows local guest OS privileged users to cause a denial of service (infinite recursive call) via vectors involving control transfer descriptors sequencing.

CVSS3: 5.5
debian
больше 8 лет назад

QEMU (aka Quick Emulator), when built with USB xHCI controller emulato ...

CVSS3: 5.5
github
больше 3 лет назад

QEMU (aka Quick Emulator), when built with USB xHCI controller emulator support, allows local guest OS privileged users to cause a denial of service (infinite recursive call) via vectors involving control transfer descriptors sequencing.

suse-cvrf
больше 8 лет назад

Security update for qemu

EPSS

Процентиль: 28%
0.00099
Низкий

5.5 Medium

CVSS3

1.9 Low

CVSS2

Дефекты

CWE-835