CVE-2018-19665
- EPSS 0.88%
- Veröffentlicht 06.12.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:58:23
The Bluetooth subsystem in QEMU mishandles negative values for length variables, leading to memory corruption.
CVE-2018-18954
- EPSS 0.52%
- Veröffentlicht 15.11.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:56:56
The pnv_lpc_do_eccb function in hw/ppc/pnv_lpc.c in Qemu before 3.1 allows out-of-bounds write or read access to PowerNV memory.
CVE-2018-16847
- EPSS 0.54%
- Veröffentlicht 02.11.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:53:26
An OOB heap buffer r/w access issue was found in the NVM Express Controller emulation in QEMU. It could occur in nvme_cmb_ops routines in nvme device. A guest user/process could use this flaw to crash the QEMU process resulting in DoS or potentially ...
CVE-2018-18438
- EPSS 0.44%
- Veröffentlicht 19.10.2018 22:29:02
- Zuletzt bearbeitet 21.11.2024 03:55:56
Qemu has integer overflows because IOReadHandler and its associated functions use a signed integer data type for a size value.
CVE-2018-10839
- EPSS 3.17%
- Veröffentlicht 16.10.2018 14:29:01
- Zuletzt bearbeitet 21.11.2024 03:42:06
Qemu emulator <= 3.0.0 built with the NE2000 NIC emulation support is vulnerable to an integer overflow, which could lead to buffer overflow issue. It could occur when receiving packets over the network. A user inside guest could use this flaw to cra...
CVE-2018-17963
- EPSS 4.78%
- Veröffentlicht 09.10.2018 22:29:01
- Zuletzt bearbeitet 21.11.2024 03:55:17
qemu_deliver_packet_iov in net/net.c in Qemu accepts packet sizes greater than INT_MAX, which allows attackers to cause a denial of service or possibly have unspecified other impact.
CVE-2018-17958
- EPSS 6.17%
- Veröffentlicht 09.10.2018 22:29:00
- Zuletzt bearbeitet 28.04.2026 16:16:03
Qemu has a Buffer Overflow in rtl8139_do_receive in hw/net/rtl8139.c because an incorrect integer data type is used.
CVE-2018-17962
- EPSS 4.5%
- Veröffentlicht 09.10.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:55:17
Qemu has a Buffer Overflow in pcnet_receive in hw/net/pcnet.c because an incorrect integer data type is used.
CVE-2018-15746
- EPSS 0.5%
- Veröffentlicht 29.08.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:51:23
qemu-seccomp.c in QEMU might allow local OS guest users to cause a denial of service (guest crash) by leveraging mishandling of the seccomp policy for threads other than the main thread.
CVE-2016-9603
- EPSS 4.45%
- Veröffentlicht 27.07.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:01:29
A heap buffer overflow flaw was found in QEMU's Cirrus CLGD 54xx VGA emulator's VNC display driver support before 2.9; the issue could occur when a VNC client attempted to update its display after a VGA operation is performed by a guest. A privileged...