CVE-2020-10761
13Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 5epss 1.8%
probabilidad de explotación
1.8%top 23% de las CVE
explotación observada
noninguna fuente lo reporta
An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-client sends a spec-compliant request that is near the boundary of maximum permitted request length. A remote nbd-client could use this flaw to crash the qemu-nbd server resulting in a denial of service.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:L
Productos afectados
Red Hat · QEMU:Referencias
http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00086.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=CVE-2020-10761https://security.gentoo.org/glsa/202011-09https://security.netapp.com/advisory/ntap-20200731-0001/https://usn.ubuntu.com/4467-1/https://www.openwall.com/lists/oss-security/2020/06/09/1