NVD

Id
18841  
Name
CVE-2016-2858  
Description
QEMU, when built with the Pseudo Random Number Generator (PRNG) back-end support, allows local guest OS users to cause a denial of service (process crash) via an entropy request, which triggers arbitrary stack based allocation and memory corruption.  
Reject
 
CVSS Version
2  
CVSS Score
1.9  
Severity
Low  
CVSS Base Score
1.9  
CVSS Impact Subscore
2.9  
CVSS Exploit Subscore
3.4  
CVSS Vector
(AV:L/AC:M/Au:N/C:N/I:N/A:P)  
Pub Date
2017-01-19  
Published
2016-04-07  
Modified Date
2016-11-28  
Seq
2016-2858  

Actions