Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Carl Brassey

#33020de 53,640
7.8CVSS total
Vulnerabilidades · 1
PT-2017-3863
7.8
2017-10-10
Qemu · Qemu · CVE-2017-15268
**Name of the Vulnerable Software and Affected Versions** Qemu versions prior to 2.10.0 **Description** The issue is related to a memory leak in the io/channel-websock.c component of the QEMU hardware emulator. It can be exploited by a remote attacker to cause a denial of service by triggering slow data-channel read operations. **Recommendations** For Qemu versions prior to 2.10.0, update to version 2.10.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the io/channel-websock.c component to minimize the risk of exploitation.