Lucene search

K
prionPRIOn knowledge basePRION:CVE-2017-5856
HistoryMar 16, 2017 - 3:59 p.m.

Memory corruption

2017-03-1615:59:00
PRIOn knowledge base
www.prio-n.com
4

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.7%

Memory leak in the megasas_handle_dcmd function in hw/scsi/megasas.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption) via MegaRAID Firmware Interface (MFI) commands with the sglist size set to a value over 2 Gb.

CPENameOperatorVersion
debian_linuxeq8.0
qemule2.8.1.1

5.9 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

26.7%