Lucene search

K
redhatcveRedhat.comRH:CVE-2016-5126
HistoryMay 31, 2016 - 5:51 a.m.

CVE-2016-5126

2016-05-3105:51:50
redhat.com
access.redhat.com
15

0.001 Low

EPSS

Percentile

24.9%

Quick Emulator(QEMU) built with the Block driver for iSCSI images support (virtio-blk) is vulnerable to a heap-based buffer overflow issue. The flaw could occur while processing iSCSI asynchronous I/O ioctl(2) calls. A user inside a guest could exploit this flaw to crash the QEMU process resulting in denial of service, or potentially leverage it to execute arbitrary code with QEMU-process privileges on the host.