VYPR
Medium severity5.5NVD Advisory· Published Jun 1, 2017· Updated May 13, 2026

CVE-2017-9060

CVE-2017-9060

Description

Memory leak in the virtio_gpu_set_scanout function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (memory consumption) via a large number of "VIRTIO_GPU_CMD_SET_SCANOUT:" commands.

Affected products

1
  • cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*
    Range: <=2.8.1.1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.