VDB
BDU%3A2024-04887
BDU%3A2024-04887
PUBLISHED
CVSS 5.5 MEDIUM
Уязвимость функции update_sctp_checksum() эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании
Risk Scores
CVSS 3.1
5.5
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| 8.2.92 | ||
| Red Hat | Red Hat Enterprise Linux 6 | |
| Red Hat | Red Hat Enterprise Linux 8 | |
| Red Hat | Red Hat Enterprise Linux 7 | |
| Red Hat | Red Hat Enterprise Linux 8 Advanced Virtualization | |
| Red Hat | Red Hat Enterprise Linux 9 | 17:9.0.0-10.el9_5.3 |
| ООО «Ред Софт», АО «ИВК», Fabrice Bellard | РЕД ОС (запись в едином реестре российских программ №3751), АЛЬТ СП 10, QEMU | |
| Red Hat | Red Hat Enterprise Linux 7 |
Timeline
- Apr 10, 2024 CVE Published
- Sep 12, 2024 CVE Updated
- May 6, 2025 PoC Published
- Jul 7, 2026 Distribution Patch
- Jul 7, 2026 Security Advisory
References
- https://redos.red-soft.ru/support/secure/ url
- https://patchew.org/QEMU/20240410070459.49112-1-philmd@linaro.org/ advisory
- RHSA-2025:4492 vendor-advisory
- https://access.redhat.com/security/cve/CVE-2024-3567 vdb
- RHBZ#2274339 issue
- https://security.netapp.com/advisory/ntap-20240822-0007/ url
- https://gitlab.com/qemu-project/qemu/-/issues/2273 url
- https://altsp.su/obnovleniya-bezopasnosti/ url
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ advisory