Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Max Reitz

#35782of 53,624
7.5Total CVSS
Vulnerabilities · 1
PT-2017-2590
7.5
2017-06-11
Qemu Team · Qemu · CVE-2017-10664
**Name of the Vulnerable Software and Affected Versions** QEMU (aka Quick Emulator) (affected versions not specified) **Description** The issue is related to the qemu-nbd in QEMU, which does not properly handle data, specifically ignoring SIGPIPE. This allows remote attackers to cause a denial of service by disconnecting during a server-to-client reply attempt, resulting in a daemon crash. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.