Total vulnerabilities in the database
A flaw was found in DPDK version 19.11 and above that allows a malicious guest to cause a segmentation fault of the vhost-user backend application running on the host, which could result in a loss of connectivity for the other guests running on that host. This is caused by a missing validity check of the descriptor address in the function virtio_dev_rx_batch_packed()
.
Software | From | Fixed in |
---|---|---|
dpdk / data_plane_development_kit | - | 19.11.x |
fedoraproject / fedora | 32 | 32.x |
opensuse / leap | 15.1 | 15.1.x |
oracle / enterprise_communications_broker | 3.1.0 | 3.1.0.x |
oracle / enterprise_communications_broker | 3.2.0 | 3.2.0.x |