Lucene search

K
cvelistRedhatCVELIST:CVE-2017-5856
HistoryMar 16, 2017 - 3:00 p.m.

CVE-2017-5856

2017-03-1615:00:00
redhat
www.cve.org

6.1 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.7%

Memory leak in the megasas_handle_dcmd function in hw/scsi/megasas.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption) via MegaRAID Firmware Interface (MFI) commands with the sglist size set to a value over 2 Gb.

6.1 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.7%