Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11792
HistoryJan 15, 2019 - 9:07 a.m.

Denial Of Service (DoS)

2019-01-1509:07:39
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

0.001 Low

EPSS

Percentile

39.6%

qemu-kvm-rhev is vulnerable to denial of service (DoS) attacks. The vulnerability exists through buffer overflow in the vnc_refresh_server_surface function in the VNC display driver in QEMU before 2.4.0.1 allows guest users to cause a denial of service (heap memory corruption and process crash) or possibly execute arbitrary code on the host via unspecified vectors, related to refreshing the server display surface.

References