CVE-2017-5931

Integer overflow in hw/virtio/virtio-crypto.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (QEMU process crash) or possibly execute arbitrary code on the host via a crafted virtio-crypto request, which triggers a heap-based buffer overflow.
Configurations

Configuration 1 (hide)

cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2017-03-27 15:59

Updated : 2025-04-20 01:37


NVD link : CVE-2017-5931

Mitre link : CVE-2017-5931

CVE.ORG link : CVE-2017-5931


JSON object : View

Products Affected

qemu

  • qemu
CWE
CWE-190

Integer Overflow or Wraparound