01 Sep 2016
CVE-2016-5105 Vulnerability
The megasas_dcmd_cfg_read function in hw/scsi/megasas.c in QEMU, when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, uses an uninitialized variable, which allows local guest administrators to read host memory via vectors involving a MegaRAID Firmware Interface (MFI) command. (CVSS:1.9) (Last Update:2016-09-09)
Vulnerability Details : The megasas_dcmd_cfg_read function in hw/scsi/megasas.c in QEMU, when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, uses an uninitialized variable, which allows local guest administrators to read host memory via vectors involving a MegaRAID Firmware Interface (MFI) command. Publish Date : 2016-09-02 Last Update Date : 2016-09-09 - CVSS Scores & Vulnerability Types
- Products Affected By CVE-2016-5105
- Number Of Affected Versions By Product
- References For CVE-2016-5105
| ||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
- Metasploit Modules Related To CVE-2016-5105There are not any metasploit modules related to this CVE entry (Please visit www.metasploit.com for more information) |