Vulnerabilities
Vulnerable Software
Amazon:  >> Firecracker  >> 0.19.0  Security Vulnerabilities
In Amazon AWS Firecracker before 0.21.3, and 0.22.x before 0.22.1, the serial console buffer can grow its memory usage without limit when data is sent to the standard input. This can result in a memory leak on the microVM emulation thread, possibly occupying more memory than intended on the host.
CVSS Score
7.5
EPSS Score
0.006
Published
2020-10-16
Firecracker vsock implementation buffer overflow in versions 0.18.0 and 0.19.0. This can result in potentially exploitable crashes.
CVSS Score
9.8
EPSS Score
0.018
Published
2019-12-11


Contact Us

Shodan ® - All rights reserved