Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:13124
HistoryJan 15, 2019 - 9:26 a.m.

Denial Of Service (DoS)

2019-01-1509:26:12
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.001 Low

EPSS

Percentile

31.0%

QEMU is vulnerable to denial of service. A heap-based buffer overflow occurs in the Slirp networking back-end when reassembling fragmented datagrams. A privileged user/process inside guest could use this flaw to crash the QEMU process resulting in DoS or potentially leverage it to execute arbitrary code on the host with privileges of the QEMU process.