CVE-2022-46770

qubes-mirage-firewall (aka Mirage firewall for QubesOS) 0.8.x through 0.8.3 allows guest OS users to cause a denial of service (CPU consumption and loss of forwarding) via a crafted multicast UDP packet (IP address range of 224.0.0.0 through 239.255.255.255).
Configurations

Configuration 1 (hide)

cpe:2.3:a:linuxfoundation:mirage_firewall:*:*:*:*:*:qubesos:*:*

History

21 Nov 2024, 07:31

Type Values Removed Values Added
References () http://packetstormsecurity.com/files/171610/Qubes-Mirage-Firewall-0.8.3-Denial-Of-Service.html - () http://packetstormsecurity.com/files/171610/Qubes-Mirage-Firewall-0.8.3-Denial-Of-Service.html -
References () https://github.com/mirage/qubes-mirage-firewall/issues/166 - Exploit, Patch, Third Party Advisory () https://github.com/mirage/qubes-mirage-firewall/issues/166 - Exploit, Patch, Third Party Advisory

08 Aug 2023, 14:21

Type Values Removed Values Added
CWE CWE-400 CWE-835

Information

Published : 2022-12-07 20:15

Updated : 2024-11-21 07:31


NVD link : CVE-2022-46770

Mitre link : CVE-2022-46770

CVE.ORG link : CVE-2022-46770


JSON object : View

Products Affected

linuxfoundation

  • mirage_firewall
CWE
CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')