[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2018-16847":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T14:53:31.930Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":29,"aliases":30,"duplicate_of":9,"upstream":31,"downstream":32,"duplicates":45,"related":46,"reserved_at":9,"published_at":50,"modified_at":51,"state":52,"summary":53,"references_raw":62,"kevs":95,"epss":96,"epss_history":99,"metrics":369,"affected":385},"CVE-2018-16847","An OOB heap buffer r/w access issue was found in the NVM Express Controller emulation in QEMU. It could occur in nvme_cmb_ops routines in nvme device. A guest user/process could use this flaw to crash the QEMU process resulting in DoS or potentially run arbitrary code with privileges of the QEMU process.",null,[11,23],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-125","Out-of-bounds Read","The product reads data past the end, or before the beginning, of the intended buffer.","weakness","Draft","Base",[19],{"id":20,"name":21,"techniques":22},"CAPEC-540","Overread Buffers",[],{"_key":24,"id":24,"name":25,"description":26,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":27,"capec":28},"CWE-787","Out-of-bounds Write","The product writes data past the end, or before the beginning, of the intended buffer.","High",[],[],[],[],[33,35,37,39,41,43],{"_key":34},"SUSE-SU-2018:3927-1",{"_key":36},"SUSE-SU-2018:4086-1",{"_key":38},"SUSE-SU-2018:4185-1",{"_key":40},"UBUNTU-CVE-2018-16847",{"_key":42},"DEBIAN-CVE-2018-16847",{"_key":44},"USN-3826-1",[],[47,48,49],{"_key":34},{"_key":36},{"_key":38},"2018-11-02T22:00:00.000Z","2024-08-05T10:32:54.125Z","Modified",{"cisa_kev":54,"cisa_ransomware":54,"cisa_vendor":9,"epss_severity":55,"epss_score":56,"severity":57,"severity_score":58,"severity_version":59,"severity_source":60,"severity_vector":61,"severity_status":52},false,"low",0.00091,"high",7.8,"v3.1","nvd","CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",[63,72,78,83,89],{"url":64,"sources":65,"tags":67},"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16847",[66,60],"cve.org",[68,69,70,71],"X Refsource CONFIRM","Issue Tracking","Patch","Third Party Advisory",{"url":73,"sources":74,"tags":75},"https://www.openwall.com/lists/oss-security/2018/11/02/1",[66,60],[76,77,70,71],"Mailing List","X Refsource MLIST",{"url":79,"sources":80,"tags":81},"https://lists.gnu.org/archive/html/qemu-devel/2018-11/msg00200.html",[66,60],[82,76,70,71],"X Refsource MISC",{"url":84,"sources":85,"tags":86},"https://usn.ubuntu.com/3826-1/",[66,60],[87,88,71],"Vendor Advisory","X Refsource UBUNTU",{"url":90,"sources":91,"tags":92},"http://www.securityfocus.com/bid/105866",[66,60],[93,94,71],"VDB Entry","X Refsource BID",[],{"date":97,"score":56,"percentile":98},"2026-06-04",0.25611,[100,104,107,110,113,115,117,120,123,126,129,132,135,138,141,145,148,152,155,157,160,163,165,168,171,174,177,180,183,187,190,193,196,199,202,205,208,211,214,217,220,223,226,229,232,235,238,241,244,247,250,253,256,259,262,265,268,271,274,277,280,282,285,288,291,294,297,300,303,306,309,312,315,318,321,324,327,330,333,336,339,342,345,348,351,354,357,360,363,366],{"date":101,"score":102,"percentile":103},"2025-11-04",0.00143,0.35218,{"date":105,"score":102,"percentile":106},"2025-11-05",0.35203,{"date":108,"score":102,"percentile":109},"2025-11-06",0.35201,{"date":111,"score":102,"percentile":112},"2025-11-07",0.35223,{"date":114,"score":102,"percentile":103},"2025-11-08",{"date":116,"score":102,"percentile":106},"2025-11-09",{"date":118,"score":102,"percentile":119},"2025-11-10",0.35171,{"date":121,"score":102,"percentile":122},"2025-11-11",0.35199,{"date":124,"score":102,"percentile":125},"2025-11-12",0.35241,{"date":127,"score":102,"percentile":128},"2025-11-13",0.35253,{"date":130,"score":102,"percentile":131},"2025-11-14",0.35257,{"date":133,"score":102,"percentile":134},"2025-11-15",0.35256,{"date":136,"score":102,"percentile":137},"2025-11-16",0.35234,{"date":139,"score":102,"percentile":140},"2025-11-17",0.35205,{"date":142,"score":143,"percentile":144},"2025-11-18",0.00166,0.32416,{"date":146,"score":143,"percentile":147},"2025-11-19",0.32431,{"date":149,"score":150,"percentile":151},"2025-11-20",0.00102,0.24047,{"date":153,"score":102,"percentile":154},"2025-11-21",0.35221,{"date":156,"score":102,"percentile":112},"2025-11-22",{"date":158,"score":102,"percentile":159},"2025-11-23",0.3519,{"date":161,"score":102,"percentile":162},"2025-11-24",0.35168,{"date":164,"score":102,"percentile":162},"2025-11-25",{"date":166,"score":102,"percentile":167},"2025-11-26",0.35167,{"date":169,"score":102,"percentile":170},"2025-11-27",0.35176,{"date":172,"score":102,"percentile":173},"2025-11-28",0.35155,{"date":175,"score":102,"percentile":176},"2025-11-29",0.35134,{"date":178,"score":102,"percentile":179},"2025-11-30",0.35114,{"date":181,"score":102,"percentile":182},"2025-12-01",0.35219,{"date":184,"score":185,"percentile":186},"2025-12-02",0.002,0.42337,{"date":188,"score":185,"percentile":189},"2025-12-03",0.42339,{"date":191,"score":185,"percentile":192},"2025-12-04",0.422,{"date":194,"score":185,"percentile":195},"2025-12-05",0.42224,{"date":197,"score":185,"percentile":198},"2025-12-06",0.42213,{"date":200,"score":185,"percentile":201},"2025-12-07",0.42191,{"date":203,"score":185,"percentile":204},"2025-12-08",0.42196,{"date":206,"score":185,"percentile":207},"2025-12-09",0.42232,{"date":209,"score":185,"percentile":210},"2025-12-10",0.42293,{"date":212,"score":185,"percentile":213},"2025-12-11",0.42323,{"date":215,"score":185,"percentile":216},"2025-12-12",0.42352,{"date":218,"score":185,"percentile":219},"2025-12-13",0.42335,{"date":221,"score":185,"percentile":222},"2025-12-14",0.42295,{"date":224,"score":185,"percentile":225},"2025-12-15",0.42281,{"date":227,"score":185,"percentile":228},"2025-12-16",0.42311,{"date":230,"score":185,"percentile":231},"2025-12-17",0.42354,{"date":233,"score":185,"percentile":234},"2025-12-18",0.42393,{"date":236,"score":185,"percentile":237},"2025-12-19",0.42408,{"date":239,"score":185,"percentile":240},"2025-12-20",0.42385,{"date":242,"score":185,"percentile":243},"2025-12-21",0.42343,{"date":245,"score":185,"percentile":246},"2025-12-22",0.42318,{"date":248,"score":185,"percentile":249},"2025-12-23",0.42317,{"date":251,"score":185,"percentile":252},"2025-12-24",0.42333,{"date":254,"score":185,"percentile":255},"2025-12-25",0.42383,{"date":257,"score":185,"percentile":258},"2025-12-26",0.42362,{"date":260,"score":185,"percentile":261},"2025-12-27",0.42375,{"date":263,"score":185,"percentile":264},"2025-12-28",0.42287,{"date":266,"score":185,"percentile":267},"2025-12-29",0.42269,{"date":269,"score":185,"percentile":270},"2025-12-30",0.42261,{"date":272,"score":185,"percentile":273},"2025-12-31",0.42306,{"date":275,"score":185,"percentile":276},"2026-01-01",0.42445,{"date":278,"score":185,"percentile":279},"2026-01-02",0.4242,{"date":281,"score":185,"percentile":237},"2026-01-03",{"date":283,"score":185,"percentile":284},"2026-01-04",0.42246,{"date":286,"score":185,"percentile":287},"2026-01-05",0.42225,{"date":289,"score":56,"percentile":290},"2026-01-06",0.26132,{"date":292,"score":56,"percentile":293},"2026-01-07",0.26158,{"date":295,"score":56,"percentile":296},"2026-01-08",0.26203,{"date":298,"score":56,"percentile":299},"2026-01-09",0.26187,{"date":301,"score":56,"percentile":302},"2026-01-10",0.26159,{"date":304,"score":56,"percentile":305},"2026-01-11",0.26138,{"date":307,"score":56,"percentile":308},"2026-01-12",0.26092,{"date":310,"score":56,"percentile":311},"2026-01-13",0.26071,{"date":313,"score":56,"percentile":314},"2026-01-14",0.26115,{"date":316,"score":56,"percentile":317},"2026-01-15",0.26109,{"date":319,"score":56,"percentile":320},"2026-01-16",0.26143,{"date":322,"score":56,"percentile":323},"2026-01-17",0.26147,{"date":325,"score":56,"percentile":326},"2026-01-18",0.26099,{"date":328,"score":56,"percentile":329},"2026-01-19",0.26056,{"date":331,"score":56,"percentile":332},"2026-01-20",0.26038,{"date":334,"score":56,"percentile":335},"2026-01-21",0.25986,{"date":337,"score":56,"percentile":338},"2026-01-22",0.25964,{"date":340,"score":56,"percentile":341},"2026-01-23",0.26041,{"date":343,"score":56,"percentile":344},"2026-01-24",0.26042,{"date":346,"score":56,"percentile":347},"2026-01-25",0.25959,{"date":349,"score":56,"percentile":350},"2026-01-26",0.25869,{"date":352,"score":56,"percentile":353},"2026-01-27",0.25853,{"date":355,"score":56,"percentile":356},"2026-01-28",0.25848,{"date":358,"score":56,"percentile":359},"2026-01-29",0.25808,{"date":361,"score":56,"percentile":362},"2026-01-30",0.258,{"date":364,"score":56,"percentile":365},"2026-01-31",0.2579,{"date":367,"score":56,"percentile":368},"2026-02-01",0.25845,[370,376],{"source":66,"cvss_v2_0":9,"cvss_v3_0":371,"cvss_v3_1":9,"cvss_v4_0":9},{"baseScore":4,"baseSeverity":372,"vectorString":373,"impactScore":374,"exploitabilityScore":375},"HIGH","CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:L/I:L/A:H",8.8,2.8,{"source":60,"cvss_v2_0":377,"cvss_v3_0":382,"cvss_v3_1":383,"cvss_v4_0":9},{"baseScore":378,"baseSeverity":9,"vectorString":379,"impactScore":380,"exploitabilityScore":381},4.6,"AV:L/AC:L/Au:N/C:P/I:P/A:P",6.4,3.9,{"baseScore":4,"baseSeverity":372,"vectorString":373,"impactScore":374,"exploitabilityScore":375},{"baseScore":58,"baseSeverity":372,"vectorString":61,"impactScore":384,"exploitabilityScore":378},9.8,[386,401,414],{"ecosystem":9,"name":387,"vendor":388,"product":389,"cpe_part":390,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":391},"ubuntu linux","canonical","ubuntu_linux","o",[392,395,397,399],{"version":393,"is_range":54,"range_type":394,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"14.04","cpe",{"version":396,"is_range":54,"range_type":394,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"16.04",{"version":398,"is_range":54,"range_type":394,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.04",{"version":400,"is_range":54,"range_type":394,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.10",{"ecosystem":9,"name":402,"vendor":402,"product":402,"cpe_part":403,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":404},"qemu","a",[405,410,412],{"version":406,"is_range":407,"range_type":394,"version_start":9,"version_start_type":9,"version_end":408,"version_end_type":409,"fixed_in":9},"lte3.0.0",true,"3.0.0","including",{"version":411,"is_range":54,"range_type":394,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.1.0:rc0",{"version":413,"is_range":54,"range_type":394,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"3.1.0:rc1",{"ecosystem":9,"name":415,"vendor":416,"product":417,"cpe_part":403,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":418},"QEMU:","[unknown]","qemu:",[419],{"version":420,"is_range":54,"range_type":66,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"n/a"]