PT-2019-19698 · Intel · Spdk

Dima Stepanov

+1

·

Published

2019-03-01

·

Updated

2021-07-21

·

CVE-2019-9547

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Storage Performance Development Kit (SPDK) versions prior to 19.01
Description A malicious vhost client could construct a circular descriptor chain, resulting in a partial denial of service in the SPDK vhost target. This occurs because the vhost target did not properly detect such chains.
Recommendations For versions prior to 19.01, update to version 19.01 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-9547

Affected Products

Spdk