← Retour aux CVEs
CVE-2025-6603
MEDIUM5.3
Description
A vulnerability was found in coldfunction qCUDA up to db0085400c2f2011eed46fbc04fdc0873141688e. It has been rated as problematic. Affected by this issue is the function qcow_make_empty of the file qCUDA/qcu-device/block/qcow.c. The manipulation of the argument s->l1_size leads to integer overflow. The attack needs to be approached locally. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.
Details CVE
Score CVSS v3.15.3
SeveriteMEDIUM
Vecteur CVSSCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vecteur d'attaqueLOCAL
ComplexiteLOW
Privileges requisLOW
Interaction utilisateurNONE
Publie6/25/2025
Derniere modification6/26/2025
Sourcenvd
Observations honeypot0
Faiblesses (CWE)
CWE-189CWE-190
References
https://github.com/coldfunction/qCUDA/issues/10(cna@vuldb.com)
https://vuldb.com/?ctiid.313820(cna@vuldb.com)
https://vuldb.com/?id.313820(cna@vuldb.com)
https://vuldb.com/?submit.601029(cna@vuldb.com)
Correlations IOC
Aucune correlation enregistree
This product uses data from the NVD API but is not endorsed or certified by the NVD.