CVE-2022-46770

qubes-mirage-firewall (aka Mirage firewall for QubesOS) 0.8.x through 0.8.3 allows guest OS users to cause a denial of service (CPU consumption and loss of forwarding) via a crafted multicast UDP packet (IP address range of 224.0.0.0 through 239.255.255.255).
Configurations

Configuration 1 (hide)

cpe:2.3:a:linuxfoundation:mirage_firewall:*:*:*:*:*:qubesos:*:*

History

08 Aug 2023, 14:21

Type Values Removed Values Added
CWE CWE-400 CWE-835

31 Mar 2023, 17:15

Type Values Removed Values Added
References
  • (MISC) http://packetstormsecurity.com/files/171610/Qubes-Mirage-Firewall-0.8.3-Denial-Of-Service.html -

12 Dec 2022, 16:56

Type Values Removed Values Added
First Time Linuxfoundation mirage Firewall
Linuxfoundation
CWE CWE-400
References (MISC) https://github.com/mirage/qubes-mirage-firewall/issues/166 - (MISC) https://github.com/mirage/qubes-mirage-firewall/issues/166 - Exploit, Patch, Third Party Advisory
CPE cpe:2.3:a:linuxfoundation:mirage_firewall:*:*:*:*:*:qubesos:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

07 Dec 2022, 20:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-12-07 20:15

Updated : 2023-12-10 14:48


NVD link : CVE-2022-46770

Mitre link : CVE-2022-46770

CVE.ORG link : CVE-2022-46770


JSON object : View

Products Affected

linuxfoundation

  • mirage_firewall
CWE
CWE-835

Loop with Unreachable Exit Condition ('Infinite Loop')