Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-0146

Опубликовано: 10 авг. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 1.9
CVSS3: 5.5

Описание

The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 and 2.x before 2.0.0 allows local users to cause a denial of service (NULL pointer dereference) via a crafted image which causes an error, related to the initialization of the snapshot_offset and nb_snapshots fields.

РелизСтатусПримечание
devel

not-affected

2.0.0~rc1+dfsg-0ubuntu3
esm-infra-legacy/trusty

not-affected

2.0.0~rc1+dfsg-0ubuntu3
lucid

DNE

precise

DNE

quantal

DNE

saucy

ignored

end of life
trusty

not-affected

2.0.0~rc1+dfsg-0ubuntu3
trusty/esm

not-affected

2.0.0~rc1+dfsg-0ubuntu3
upstream

released

1.7.2, 2.0

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

released

0.12.3+noroms-0ubuntu9.24
precise

released

1.0+noroms-0ubuntu14.17
quantal

ignored

end of life
saucy

DNE

trusty

DNE

trusty/esm

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 19%
0.00059
Низкий

1.9 Low

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

redhat
около 11 лет назад

The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 and 2.x before 2.0.0 allows local users to cause a denial of service (NULL pointer dereference) via a crafted image which causes an error, related to the initialization of the snapshot_offset and nb_snapshots fields.

CVSS3: 5.5
nvd
почти 8 лет назад

The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 and 2.x before 2.0.0 allows local users to cause a denial of service (NULL pointer dereference) via a crafted image which causes an error, related to the initialization of the snapshot_offset and nb_snapshots fields.

CVSS3: 5.5
debian
почти 8 лет назад

The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 an ...

CVSS3: 5.5
github
около 3 лет назад

The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 and 2.x before 2.0.0 allows local users to cause a denial of service (NULL pointer dereference) via a crafted image which causes an error, related to the initialization of the snapshot_offset and nb_snapshots fields.

oracle-oval
около 11 лет назад

ELSA-2014-0420: qemu-kvm security update (MODERATE)

EPSS

Процентиль: 19%
0.00059
Низкий

1.9 Low

CVSS2

5.5 Medium

CVSS3

Уязвимость CVE-2014-0146