ZeroHour

CVE-2018-5683

PoC
CVSS 3.1
6.0 medium
EPSS
<1%p50
Published
()
Modified
Description

The vga_draw_text function in Qemu allows local OS guest privileged users to cause a denial of service (out-of-bounds read and QEMU process crash) by leveraging improper memory address validation.

Vendors
qemudebianredhatcanonical
Products
qemu, debian linux, enterprise linux desktop, enterprise linux server, enterprise linux server aus, enterprise linux server eus, enterprise linux server tus, enterprise linux workstation, ubuntu linux
Weakness
CWE-125
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.