CVE
- Id
- 82435
- CVE No.
- CVE-2015-5158
- Status
- Candidate
- Description
- Stack-based buffer overflow in hw/scsi/scsi-bus.c in QEMU, when built with SCSI-device emulation support, allows guest OS users with CAP_SYS_RAWIO permissions to cause a denial of service (instance crash) via an invalid opcode in a SCSI command descriptor block.
- Phase
- Assigned (20150701)
- Votes
- None (candidate not yet proposed)
- Comments