CVE-2019-14940

In Storage Performance Development Kit (SPDK) before 19.07, a user of a vhost can cause a crash if the target is sent invalid input.

Published : 2019-08-12 02:15 Updated : 2019-08-21 13:55

4.0
CVSS Score More info
Score 4.0 / 10
4.0
Vendor Product Version URI
Spdk Storage Performance Development Kit 1.0.0 cpe:/a:spdk:storage_performance_development_kit:1.0.0
Spdk Storage Performance Development Kit 1.2.0 cpe:/a:spdk:storage_performance_development_kit:1.2.0
Spdk Storage Performance Development Kit 16.06 cpe:/a:spdk:storage_performance_development_kit:16.06
Spdk Storage Performance Development Kit 16.08 cpe:/a:spdk:storage_performance_development_kit:16.08
Spdk Storage Performance Development Kit 16.12 cpe:/a:spdk:storage_performance_development_kit:16.12
Spdk Storage Performance Development Kit 17.03 cpe:/a:spdk:storage_performance_development_kit:17.03
Spdk Storage Performance Development Kit 17.07 cpe:/a:spdk:storage_performance_development_kit:17.07
Spdk Storage Performance Development Kit 17.07.1 cpe:/a:spdk:storage_performance_development_kit:17.07.1
Spdk Storage Performance Development Kit 17.10 cpe:/a:spdk:storage_performance_development_kit:17.10
Spdk Storage Performance Development Kit 17.10.1 cpe:/a:spdk:storage_performance_development_kit:17.10.1
Spdk Storage Performance Development Kit 18.01 cpe:/a:spdk:storage_performance_development_kit:18.01
Spdk Storage Performance Development Kit 18.01.1 cpe:/a:spdk:storage_performance_development_kit:18.01.1
Spdk Storage Performance Development Kit 18.04 cpe:/a:spdk:storage_performance_development_kit:18.04
Spdk Storage Performance Development Kit 18.04.1 cpe:/a:spdk:storage_performance_development_kit:18.04.1
Spdk Storage Performance Development Kit 18.07 cpe:/a:spdk:storage_performance_development_kit:18.07
Spdk Storage Performance Development Kit 18.07.1 cpe:/a:spdk:storage_performance_development_kit:18.07.1
Spdk Storage Performance Development Kit 18.10 cpe:/a:spdk:storage_performance_development_kit:18.10
Spdk Storage Performance Development Kit 18.10.1 cpe:/a:spdk:storage_performance_development_kit:18.10.1
Spdk Storage Performance Development Kit 19.01 cpe:/a:spdk:storage_performance_development_kit:19.01
Spdk Storage Performance Development Kit 19.04 cpe:/a:spdk:storage_performance_development_kit:19.04
Spdk Storage Performance Development Kit 19.04.1 cpe:/a:spdk:storage_performance_development_kit:19.04.1
  1. Spdk (1) Search CVE
    1. Storage Performance Development Kit (21) Search CVE
      1. 1.0.0
      2. 1.2.0
      3. 16.06
      4. 16.08
      5. 16.12
      6. 17.03
      7. 17.07
      8. 17.07.1
      9. 17.10
      10. 17.10.1
      11. 18.01
      12. 18.01.1
      13. 18.04
      14. 18.04.1
      15. 18.07
      16. 18.07.1
      17. 18.10
      18. 18.10.1
      19. 19.01
      20. 19.04
      21. 19.04.1

CWE

ID Name Description Links
CWE-20 Improper Input Validation The product does not validate or incorrectly validates input that can affect the control flow or data flow of a program. CVE

History of changes

Date Event
2019-08-21 13:55
2019-08-12 02:15

New CVE