Логотип exploitDog
bind:"CVE-2021-3527"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2021-3527"

Количество 20

Количество 20

ubuntu логотип

CVE-2021-3527

около 4 лет назад

A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2021-3527

около 4 лет назад

A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.

CVSS3: 3.2
EPSS: Низкий
nvd логотип

CVE-2021-3527

около 4 лет назад

A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2021-3527

около 4 лет назад

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2021-3527

около 4 лет назад

A flaw was found in the USB redirector device (usb-redir) of QEMU. Sma ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-fwv2-775h-qv4v

около 3 лет назад

A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.

CVSS3: 5.5
EPSS: Низкий
fstec логотип

BDU:2022-05840

около 4 лет назад

Уязвимость эмулятора аппаратного обеспечения QEMU, связанная с выделением неограниченной памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:2858-1

почти 4 года назад

Security update for qemu

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:2789-1

почти 4 года назад

Security update for qemu

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3575-1

больше 3 лет назад

Security update for qemu

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:2858-1

почти 4 года назад

Security update for qemu

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:2813-1

почти 4 года назад

Security update for qemu

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:2789-1

почти 4 года назад

Security update for qemu

EPSS: Низкий
oracle-oval логотип

ELSA-2021-9425

почти 4 года назад

ELSA-2021-9425: qemu security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3635-1

больше 3 лет назад

Security update for qemu

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3614-1

больше 3 лет назад

Security update for qemu

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3613-1

больше 3 лет назад

Security update for qemu

EPSS: Низкий
oracle-oval логотип

ELSA-2021-9568

больше 3 лет назад

ELSA-2021-9568: virt:kvm_utils security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1202-1

почти 4 года назад

Security update for qemu

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:14848-1

больше 3 лет назад

Security update for xen

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-3527

A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.

CVSS3: 5.5
0%
Низкий
около 4 лет назад
redhat логотип
CVE-2021-3527

A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.

CVSS3: 3.2
0%
Низкий
около 4 лет назад
nvd логотип
CVE-2021-3527

A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.

CVSS3: 5.5
0%
Низкий
около 4 лет назад
msrc логотип
CVSS3: 5.5
0%
Низкий
около 4 лет назад
debian логотип
CVE-2021-3527

A flaw was found in the USB redirector device (usb-redir) of QEMU. Sma ...

CVSS3: 5.5
0%
Низкий
около 4 лет назад
github логотип
GHSA-fwv2-775h-qv4v

A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.

CVSS3: 5.5
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2022-05840

Уязвимость эмулятора аппаратного обеспечения QEMU, связанная с выделением неограниченной памяти, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.5
0%
Низкий
около 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:2858-1

Security update for qemu

почти 4 года назад
suse-cvrf логотип
openSUSE-SU-2021:2789-1

Security update for qemu

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2021:3575-1

Security update for qemu

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:2858-1

Security update for qemu

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2021:2813-1

Security update for qemu

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2021:2789-1

Security update for qemu

почти 4 года назад
oracle-oval логотип
ELSA-2021-9425

ELSA-2021-9425: qemu security update (IMPORTANT)

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2021:3635-1

Security update for qemu

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3614-1

Security update for qemu

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3613-1

Security update for qemu

больше 3 лет назад
oracle-oval логотип
ELSA-2021-9568

ELSA-2021-9568: virt:kvm_utils security update (IMPORTANT)

больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1202-1

Security update for qemu

почти 4 года назад
suse-cvrf логотип
SUSE-SU-2021:14848-1

Security update for xen

больше 3 лет назад

Уязвимостей на страницу