Record summary

CVE-2017-15118 has a selected CVSS score of 8.3 (high); EIP currently links 1 catalogued exploit.

Description

A stack-based buffer overflow vulnerability was found in NBD server implementation in qemu before 2.11 allowing a client to request an export name of size up to 4096 bytes, which in fact should be limited to 256 bytes, causing an out-of-bounds stack write in the qemu process. If NBD server requires TLS, the attacker cannot trigger the buffer overflow without first successfully negotiating TLS.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Affected products and versions

1
ProductSourceVersion rangeStatus
CVE List2.11affected

Proofs of concept

1

Catalogued exploits

ExploitDBQEMU - NBD Server Long Export Name Stack Buffer OverflowExploitDB exploitby Eric BlakeNot analyzed1 file
ExploitDB

PoC details

References

8