Lucene search

K
osvGoogleOSV:CVE-2017-18030
HistoryJan 23, 2018 - 6:29 p.m.

CVE-2017-18030

2018-01-2318:29:00
Google
osv.dev
8

5.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.3%

The cirrus_invalidate_region function in hw/display/cirrus_vga.c in Qemu allows local OS guest privileged users to cause a denial of service (out-of-bounds array access and QEMU process crash) via vectors related to negative pitch.

5.4 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.3%