Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:18260
HistoryMay 02, 2019 - 6:36 a.m.

Buffer Over-Read

2019-05-0206:36:18
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

0.001 Low

EPSS

Percentile

26.7%

QEMU is vulnerable to buffer over-read attacks. This occurs in the vmxnet_tx_pkt_parse_headers function in hw/net/vmxnet_tx_pkt.c. which allows local guest OS administrators to cause a denial of service by leveraging failure to check IP header length resulting an application crash.

References