Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-17963

Опубликовано: 21 мая 2018
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

qemu_deliver_packet_iov in net/net.c in Qemu accepts packet sizes greater than INT_MAX, which allows attackers to cause a denial of service or possibly have unspecified other impact.

A potential integer overflow issue was found in the networking back-end of QEMU. It could occur while receiving packets, because it accepted packets with large size value. Such overflow could lead to OOB buffer access issue. A user inside guest could use this flaw to crash the QEMU process resulting in DoS.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5kvmNot affected
Red Hat Enterprise Linux 6qemu-kvmWill not fix
Red Hat Enterprise Linux 7qemu-kvmWill not fix
Red Hat Enterprise Linux 8qemu-kvmNot affected
Red Hat OpenStack Platform 12 (Pike)qemu-kvm-rhevAffected
Red Hat OpenStack Platform 8 (Liberty)qemu-kvm-rhevWill not fix
Red Hat OpenStack Platform 9 (Mitaka)qemu-kvm-rhevWill not fix
Red Hat Enterprise Linux 7qemu-kvm-maFixedRHSA-2019:216606.08.2019
Red Hat OpenStack Platform 10.0 (Newton)qemu-kvm-rhevFixedRHSA-2019:242509.08.2019
Red Hat OpenStack Platform 13.0 (Queens)qemu-kvm-rhevFixedRHSA-2019:242509.08.2019

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-121
https://bugzilla.redhat.com/show_bug.cgi?id=1636777QEMU: net: ignore packets with large size

EPSS

Процентиль: 84%
0.02211
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 6 лет назад

qemu_deliver_packet_iov in net/net.c in Qemu accepts packet sizes greater than INT_MAX, which allows attackers to cause a denial of service or possibly have unspecified other impact.

CVSS3: 9.8
nvd
больше 6 лет назад

qemu_deliver_packet_iov in net/net.c in Qemu accepts packet sizes greater than INT_MAX, which allows attackers to cause a denial of service or possibly have unspecified other impact.

CVSS3: 9.8
debian
больше 6 лет назад

qemu_deliver_packet_iov in net/net.c in Qemu accepts packet sizes grea ...

CVSS3: 9.8
github
около 3 лет назад

qemu_deliver_packet_iov in net/net.c in Qemu accepts packet sizes greater than INT_MAX, which allows attackers to cause a denial of service or possibly have unspecified other impact.

suse-cvrf
больше 6 лет назад

Security update for xen

EPSS

Процентиль: 84%
0.02211
Низкий

6.5 Medium

CVSS3