← Voltar para CVEs
CVE-2025-6603
MEDIUM5.3
Descricao
A vulnerability was found in coldfunction qCUDA up to db0085400c2f2011eed46fbc04fdc0873141688e. It has been rated as problematic. Affected by this issue is the function qcow_make_empty of the file qCUDA/qcu-device/block/qcow.c. The manipulation of the argument s->l1_size leads to integer overflow. The attack needs to be approached locally. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.
Detalhes CVE
Pontuacao CVSS v3.15.3
SeveridadeMEDIUM
Vetor CVSSCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Vetor de ataqueLOCAL
ComplexidadeLOW
Privilegios necessariosLOW
Interacao do usuarioNONE
Publicado6/25/2025
Ultima modificacao6/26/2025
Fontenvd
Avistamentos honeypot0
Fraquezas (CWE)
CWE-189CWE-190
Referencias
https://github.com/coldfunction/qCUDA/issues/10(cna@vuldb.com)
https://vuldb.com/?ctiid.313820(cna@vuldb.com)
https://vuldb.com/?id.313820(cna@vuldb.com)
https://vuldb.com/?submit.601029(cna@vuldb.com)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.