Qemu

Qemu

428 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.88%
  • Veröffentlicht 06.12.2018 23:29:01
  • Zuletzt bearbeitet 21.11.2024 03:58:23

The Bluetooth subsystem in QEMU mishandles negative values for length variables, leading to memory corruption.

  • EPSS 0.52%
  • Veröffentlicht 15.11.2018 20:29:00
  • Zuletzt bearbeitet 21.11.2024 03:56:56

The pnv_lpc_do_eccb function in hw/ppc/pnv_lpc.c in Qemu before 3.1 allows out-of-bounds write or read access to PowerNV memory.

  • EPSS 0.54%
  • Veröffentlicht 02.11.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 03:53:26

An OOB heap buffer r/w access issue was found in the NVM Express Controller emulation in QEMU. It could occur in nvme_cmb_ops routines in nvme device. A guest user/process could use this flaw to crash the QEMU process resulting in DoS or potentially ...

  • EPSS 0.44%
  • Veröffentlicht 19.10.2018 22:29:02
  • Zuletzt bearbeitet 21.11.2024 03:55:56

Qemu has integer overflows because IOReadHandler and its associated functions use a signed integer data type for a size value.

Exploit
  • EPSS 3.17%
  • Veröffentlicht 16.10.2018 14:29:01
  • Zuletzt bearbeitet 21.11.2024 03:42:06

Qemu emulator <= 3.0.0 built with the NE2000 NIC emulation support is vulnerable to an integer overflow, which could lead to buffer overflow issue. It could occur when receiving packets over the network. A user inside guest could use this flaw to cra...

  • EPSS 4.78%
  • Veröffentlicht 09.10.2018 22:29:01
  • Zuletzt bearbeitet 21.11.2024 03:55:17

qemu_deliver_packet_iov in net/net.c in Qemu accepts packet sizes greater than INT_MAX, which allows attackers to cause a denial of service or possibly have unspecified other impact.

  • EPSS 6.17%
  • Veröffentlicht 09.10.2018 22:29:00
  • Zuletzt bearbeitet 28.04.2026 16:16:03

Qemu has a Buffer Overflow in rtl8139_do_receive in hw/net/rtl8139.c because an incorrect integer data type is used.

Exploit
  • EPSS 4.5%
  • Veröffentlicht 09.10.2018 22:29:00
  • Zuletzt bearbeitet 21.11.2024 03:55:17

Qemu has a Buffer Overflow in pcnet_receive in hw/net/pcnet.c because an incorrect integer data type is used.

  • EPSS 0.5%
  • Veröffentlicht 29.08.2018 19:29:00
  • Zuletzt bearbeitet 21.11.2024 03:51:23

qemu-seccomp.c in QEMU might allow local OS guest users to cause a denial of service (guest crash) by leveraging mishandling of the seccomp policy for threads other than the main thread.

  • EPSS 4.45%
  • Veröffentlicht 27.07.2018 21:29:00
  • Zuletzt bearbeitet 21.11.2024 03:01:29

A heap buffer overflow flaw was found in QEMU's Cirrus CLGD 54xx VGA emulator's VNC display driver support before 2.9; the issue could occur when a VNC client attempted to update its display after a VGA operation is performed by a guest. A privileged...