CVE-2019-15890

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
06/09/2019
Last modified:
20/09/2019

Description

libslirp 4.0.0, as used in QEMU 4.1.0, has a use-after-free in ip_reass in ip_input.c.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:libslirp_project:libslirp:4.0.0:-:*:*:*:*:*:*
cpe:2.3:a:qemu:qemu:4.1.0:*:*:*:*:*:*:*