Qemu

Qemu

428 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.64%
  • Veröffentlicht 25.09.2020 05:15:12
  • Zuletzt bearbeitet 21.11.2024 05:17:13

QEMU 5.0.0 has a heap-based Buffer Overflow in flatview_read_continue in exec.c because hw/sd/sdhci.c mishandles a write operation in the SDHC_BLKSIZE case.

  • EPSS 0.45%
  • Veröffentlicht 25.09.2020 05:15:12
  • Zuletzt bearbeitet 21.11.2024 05:18:16

hw/usb/hcd-ohci.c in QEMU 5.0.0 has an infinite loop when a TD list has a loop.

  • EPSS 5.45%
  • Veröffentlicht 31.08.2020 18:15:12
  • Zuletzt bearbeitet 21.11.2024 05:03:05

An out-of-bounds read/write access flaw was found in the USB emulator of the QEMU in versions before 5.2.0. This issue occurs while processing USB packets from a guest when USBDevice 'setup_len' exceeds its 'data_buf[4096]' in the do_token_in, do_tok...

  • EPSS 0.37%
  • Veröffentlicht 31.08.2020 15:15:10
  • Zuletzt bearbeitet 21.11.2024 05:00:21

In QEMU through 5.0.0, an integer overflow was found in the SM501 display driver implementation. This flaw occurs in the COPY_AREA macro while handling MMIO write operations through the sm501_2d_engine_write() callback. A local attacker could abuse t...

  • EPSS 0.45%
  • Veröffentlicht 27.08.2020 16:15:10
  • Zuletzt bearbeitet 21.11.2024 05:03:13

oss_write in audio/ossaudio.c in QEMU before 5.0.0 mishandles a buffer position.

  • EPSS 0.38%
  • Veröffentlicht 11.08.2020 16:15:12
  • Zuletzt bearbeitet 21.11.2024 05:06:45

In QEMU through 5.0.0, an assertion failure can occur in the network packet processing. This issue affects the e1000e and vmxnet3 network devices. A malicious guest user/process could use this flaw to abort the QEMU process on the host, resulting in ...

  • EPSS 0.46%
  • Veröffentlicht 28.07.2020 16:15:12
  • Zuletzt bearbeitet 21.11.2024 05:06:20

hw/net/xgmac.c in the XGMAC Ethernet controller in QEMU before 07-20-2020 has a buffer overflow. This occurs during packet transmission and affects the highbank and midway emulated machines. A guest user or process could use this flaw to crash the QE...

Exploit
  • EPSS 0.44%
  • Veröffentlicht 21.07.2020 16:15:11
  • Zuletzt bearbeitet 21.11.2024 05:06:19

QEMU 4.2.0 has a use-after-free in hw/net/e1000e_core.c because a guest OS user can trigger an e1000e packet with the data's address set to the e1000e's MMIO address.

  • EPSS 0.43%
  • Veröffentlicht 02.07.2020 20:15:11
  • Zuletzt bearbeitet 21.11.2024 05:05:34

In QEMU 4.2.0, a MemoryRegionOps object may lack read/write callback methods, leading to a NULL pointer dereference.

  • EPSS 1.8%
  • Veröffentlicht 09.06.2020 13:15:10
  • Zuletzt bearbeitet 21.11.2024 04:56:01

An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-client sends a spec-compliant request that is near the boundary of maximum permitted request length. A r...