CVE-2018-12617 | qemu-ga 2.12.50 QMP Command qga/commands-posix.c qmp_guest_file_read integer overflow (USN-3826-1 / EDB-44925)
A vulnerability classified as critical has been found in qemu-ga 2.12.50. Affected is the function qmp_guest_file_read of the file qga/commands-posix.c of the component QMP Command Handler. The manipulation leads to integer overflow.
This vulnerability is traded as CVE-2018-12617. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.