Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-15119

Опубликовано: 27 июл. 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5
CVSS3: 5.8

Описание

The Network Block Device (NBD) server in Quick Emulator (QEMU) before 2.11 is vulnerable to a denial of service issue. It could occur if a client sent large option requests, making the server waste CPU time on reading up to 4GB per request. A client could use this flaw to keep the NBD server from serving other requests, resulting in DoS.

РелизСтатусПримечание
artful

released

1:2.10+dfsg-0ubuntu3.5
devel

not-affected

1:2.11+dfsg-1ubuntu1
esm-infra-legacy/trusty

not-affected

esm-infra/xenial

not-affected

1:2.5+dfsg-5ubuntu10.22
precise/esm

DNE

trusty

not-affected

trusty/esm

not-affected

upstream

released

2.11
xenial

released

1:2.5+dfsg-5ubuntu10.22
zesty

ignored

end of life

Показывать по

РелизСтатусПримечание
artful

DNE

devel

DNE

esm-infra-legacy/trusty

DNE

precise/esm

not-affected

trusty

DNE

trusty/esm

DNE

upstream

needs-triage

xenial

DNE

zesty

DNE

Показывать по

EPSS

Процентиль: 82%
0.01834
Низкий

5 Medium

CVSS2

5.8 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.8
redhat
больше 7 лет назад

The Network Block Device (NBD) server in Quick Emulator (QEMU) before 2.11 is vulnerable to a denial of service issue. It could occur if a client sent large option requests, making the server waste CPU time on reading up to 4GB per request. A client could use this flaw to keep the NBD server from serving other requests, resulting in DoS.

CVSS3: 5.8
nvd
почти 7 лет назад

The Network Block Device (NBD) server in Quick Emulator (QEMU) before 2.11 is vulnerable to a denial of service issue. It could occur if a client sent large option requests, making the server waste CPU time on reading up to 4GB per request. A client could use this flaw to keep the NBD server from serving other requests, resulting in DoS.

CVSS3: 5.8
debian
почти 7 лет назад

The Network Block Device (NBD) server in Quick Emulator (QEMU) before ...

CVSS3: 8.6
github
около 3 лет назад

The Network Block Device (NBD) server in Quick Emulator (QEMU) before 2.11 is vulnerable to a denial of service issue. It could occur if a client sent large option requests, making the server waste CPU time on reading up to 4GB per request. A client could use this flaw to keep the NBD server from serving other requests, resulting in DoS.

CVSS3: 8.6
fstec
почти 7 лет назад

Уязвимость сервера Network Block Device (NBD) эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 82%
0.01834
Низкий

5 Medium

CVSS2

5.8 Medium

CVSS3