CVE Published: 02/07/2024 |
CVE Updated: 13/11/2024 |
CVE Year: 2024 Source: redhat |
Vendor: |
Product: Status : PUBLISHED
CVE-2024-4467 Description
A flaw was found in the QEMU disk image utility (qemu-img) \'info\' command. A specially crafted image file containing a `json:{}` value describing block devices in QMP could cause the qemu-img process on the host to consume large amounts of memory or CPU time, leading to denial of service or read/write to an existing external file.