Логотип exploitDog
bind:"GHSA-pfxg-46gm-p35h" OR bind:"CVE-2024-7730"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-pfxg-46gm-p35h" OR bind:"CVE-2024-7730"

Количество 7

Количество 7

github логотип

GHSA-pfxg-46gm-p35h

около 1 года назад

A heap buffer overflow was found in the virtio-snd device in QEMU. When reading input audio in the virtio-snd input callback, virtio_snd_pcm_in_cb, the function did not check whether the iov can fit the data buffer. This issue can trigger an out-of-bounds write if the size of the virtio queue element is equal to virtio_snd_pcm_status, which makes the available space for audio data zero.

CVSS3: 7.4
EPSS: Низкий
ubuntu логотип

CVE-2024-7730

около 1 года назад

A heap buffer overflow was found in the virtio-snd device in QEMU. When reading input audio in the virtio-snd input callback, virtio_snd_pcm_in_cb, the function did not check whether the iov can fit the data buffer. This issue can trigger an out-of-bounds write if the size of the virtio queue element is equal to virtio_snd_pcm_status, which makes the available space for audio data zero.

CVSS3: 7.4
EPSS: Низкий
redhat логотип

CVE-2024-7730

больше 1 года назад

A heap buffer overflow was found in the virtio-snd device in QEMU. When reading input audio in the virtio-snd input callback, virtio_snd_pcm_in_cb, the function did not check whether the iov can fit the data buffer. This issue can trigger an out-of-bounds write if the size of the virtio queue element is equal to virtio_snd_pcm_status, which makes the available space for audio data zero.

CVSS3: 7.4
EPSS: Низкий
nvd логотип

CVE-2024-7730

около 1 года назад

A heap buffer overflow was found in the virtio-snd device in QEMU. When reading input audio in the virtio-snd input callback, virtio_snd_pcm_in_cb, the function did not check whether the iov can fit the data buffer. This issue can trigger an out-of-bounds write if the size of the virtio queue element is equal to virtio_snd_pcm_status, which makes the available space for audio data zero.

CVSS3: 7.4
EPSS: Низкий
msrc логотип

CVE-2024-7730

7 месяцев назад

CVSS3: 7.4
EPSS: Низкий
debian логотип

CVE-2024-7730

около 1 года назад

A heap buffer overflow was found in the virtio-snd device in QEMU. Whe ...

CVSS3: 7.4
EPSS: Низкий
fstec логотип

BDU:2024-10153

больше 1 года назад

Уязвимость функции virtio_snd_pcm_in_cb эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 7.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-pfxg-46gm-p35h

A heap buffer overflow was found in the virtio-snd device in QEMU. When reading input audio in the virtio-snd input callback, virtio_snd_pcm_in_cb, the function did not check whether the iov can fit the data buffer. This issue can trigger an out-of-bounds write if the size of the virtio queue element is equal to virtio_snd_pcm_status, which makes the available space for audio data zero.

CVSS3: 7.4
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2024-7730

A heap buffer overflow was found in the virtio-snd device in QEMU. When reading input audio in the virtio-snd input callback, virtio_snd_pcm_in_cb, the function did not check whether the iov can fit the data buffer. This issue can trigger an out-of-bounds write if the size of the virtio queue element is equal to virtio_snd_pcm_status, which makes the available space for audio data zero.

CVSS3: 7.4
0%
Низкий
около 1 года назад
redhat логотип
CVE-2024-7730

A heap buffer overflow was found in the virtio-snd device in QEMU. When reading input audio in the virtio-snd input callback, virtio_snd_pcm_in_cb, the function did not check whether the iov can fit the data buffer. This issue can trigger an out-of-bounds write if the size of the virtio queue element is equal to virtio_snd_pcm_status, which makes the available space for audio data zero.

CVSS3: 7.4
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-7730

A heap buffer overflow was found in the virtio-snd device in QEMU. When reading input audio in the virtio-snd input callback, virtio_snd_pcm_in_cb, the function did not check whether the iov can fit the data buffer. This issue can trigger an out-of-bounds write if the size of the virtio queue element is equal to virtio_snd_pcm_status, which makes the available space for audio data zero.

CVSS3: 7.4
0%
Низкий
около 1 года назад
msrc логотип
CVSS3: 7.4
0%
Низкий
7 месяцев назад
debian логотип
CVE-2024-7730

A heap buffer overflow was found in the virtio-snd device in QEMU. Whe ...

CVSS3: 7.4
0%
Низкий
около 1 года назад
fstec логотип
BDU:2024-10153

Уязвимость функции virtio_snd_pcm_in_cb эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

CVSS3: 7.4
0%
Низкий
больше 1 года назад

Уязвимостей на страницу