Lucene search

K
osvGoogleOSV:CVE-2017-5931
HistoryMar 27, 2017 - 3:59 p.m.

CVE-2017-5931

2017-03-2715:59:00
Google
osv.dev
13

EPSS

0.001

Percentile

34.6%

Integer overflow in hw/virtio/virtio-crypto.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (QEMU process crash) or possibly execute arbitrary code on the host via a crafted virtio-crypto request, which triggers a heap-based buffer overflow.