PT-2018-14300 · Qemu+4 · Qemu+4

Daniel Shapira

·

Published

2018-10-09

·

Updated

2024-06-15

·

CVE-2018-17963

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Qemu (affected versions not specified)
Description The issue allows attackers to cause a denial of service or possibly have unspecified other impact due to qemu deliver packet iov in net/net.c accepting packet sizes greater than INT MAX.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2870
CVE-2018-17963
DLA-1599-1
DSA-4338-1
OPENSUSE-SU-2018_4004-1
OPENSUSE-SU-2018_4147-1
OPENSUSE-SU-2024:11287-1
RHSA-2019:2166
RHSA-2019:2425
RHSA-2019:2553
RHSA-2019_2166
SUSE-SU-2018:3332-1
SUSE-SU-2018:3490-1
SUSE-SU-2018:3912-1
SUSE-SU-2018:3927-1
SUSE-SU-2018:3973-1
SUSE-SU-2018:3973-2
SUSE-SU-2018:3975-1
SUSE-SU-2018:3987-1
SUSE-SU-2018:4129-1
SUSE-SU-2018:4185-1
SUSE-SU-2018:4237-1
SUSE-SU-2019:0003-1
SUSE-SU-2019:0825-1
SUSE-SU-2019:0827-1
SUSE-SU-2019:13921-1
SUSE-SU-2019:14011-1
SUSE-SU-2019_0003-1
USN-3826-1

Affected Products

Alt Linux
Qemu
Red Hat
Suse
Ubuntu