- EPSS 0.11%
- Veröffentlicht 02.09.2016 14:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
QEMU (aka Quick Emulator), when built with VMWARE PVSCSI paravirtual SCSI bus emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds array access) via vectors related to the (1) PVSCSI_CMD_SETUP_RINGS or (...
CVE-2016-5403
- EPSS 0.07%
- Veröffentlicht 02.08.2016 16:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The virtqueue_pop function in hw/virtio/virtio.c in QEMU allows local guest OS administrators to cause a denial of service (memory consumption and QEMU process crash) by submitting requests without waiting for completion.
- EPSS 0.06%
- Veröffentlicht 16.06.2016 18:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ne2000_receive function in the NE2000 NIC emulation support (hw/net/ne2000.c) in QEMU before 2.5.1 allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) via crafted values for the PSTART and PSTO...
CVE-2016-2538
- EPSS 0.09%
- Veröffentlicht 16.06.2016 18:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple integer overflows in the USB Net device emulator (hw/usb/dev-network.c) in QEMU before 2.5.1 allow local guest OS administrators to cause a denial of service (QEMU process crash) or obtain sensitive host memory information via a remote NDIS ...
CVE-2016-2392
- EPSS 0.09%
- Veröffentlicht 16.06.2016 18:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
The is_rndis function in the USB Net device emulator (hw/usb/dev-network.c) in QEMU before 2.5.1 does not properly validate USB configuration descriptor objects, which allows local guest OS administrators to cause a denial of service (NULL pointer de...
- EPSS 0.05%
- Veröffentlicht 16.06.2016 18:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ohci_bus_start function in the USB OHCI emulation support (hw/usb/hcd-ohci.c) in QEMU allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) via vectors related to multiple eof_timers.
CVE-2016-5338
- EPSS 0.08%
- Veröffentlicht 14.06.2016 14:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The (1) esp_reg_read and (2) esp_reg_write functions in hw/scsi/esp.c in QEMU allow local guest OS administrators to cause a denial of service (QEMU process crash) or execute arbitrary code on the QEMU host via vectors related to the information tran...
CVE-2016-5337
- EPSS 0.05%
- Veröffentlicht 14.06.2016 14:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The megasas_ctrl_get_info function in hw/scsi/megasas.c in QEMU allows local guest OS administrators to obtain sensitive host memory information via vectors related to reading device control information.
CVE-2016-5238
- EPSS 0.06%
- Veröffentlicht 14.06.2016 14:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The get_cmd function in hw/scsi/esp.c in QEMU might allow local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors related to reading from the information transfer buffer in non-DMA mode.
CVE-2016-5126
- EPSS 0.2%
- Veröffentlicht 01.06.2016 22:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in the iscsi_aio_ioctl function in block/iscsi.c in QEMU allows local guest OS users to cause a denial of service (QEMU process crash) or possibly execute arbitrary code via a crafted iSCSI asynchronous I/O ioctl call.