Lucene search

K
cvelistRedhatCVELIST:CVE-2011-3346
HistoryApr 01, 2014 - 1:00 a.m.

CVE-2011-3346

2014-04-0101:00:00
redhat
www.cve.org

6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

46.6%

Buffer overflow in hw/scsi-disk.c in the SCSI subsystem in QEMU before 0.15.2, as used by Xen, might allow local guest users with permission to access the CD-ROM to cause a denial of service (guest crash) via a crafted SAI READ CAPACITY SCSI command. NOTE: this is only a vulnerability when root has manually modified certain permissions or ACLs.

6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

46.6%