Lucene search

K
redhatcveRedhat.comRH:CVE-2019-15890
HistoryApr 02, 2020 - 8:47 a.m.

CVE-2019-15890

2020-04-0208:47:48
redhat.com
access.redhat.com
19

0.009 Low

EPSS

Percentile

82.9%

A use-after-free issue was found in the SLiRP networking implementation of the QEMU emulator. The issue occurs in ip_reass() routine while reassembling incoming packets, if the first fragment is bigger than the m->m_dat[] buffer. A user or process could use this flaw to crash the QEMU process on the host, resulting in a denial of service.