CVE-2014-0145
- EPSS 0.13%
- Veröffentlicht 10.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Multiple buffer overflows in QEMU before 1.7.2 and 2.x before 2.0.0, allow local users to cause a denial of service (crash) or possibly execute arbitrary code via a large (1) L1 table in the qcow2_snapshot_load_tmp in the QCOW 2 block driver (block/q...
CVE-2014-0146
- EPSS 0.11%
- Veröffentlicht 10.08.2017 15:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 and 2.x before 2.0.0 allows local users to cause a denial of service (NULL pointer dereference) via a crafted image which causes an error, related to the initialization of the snapsh...
CVE-2017-10664
- EPSS 6.24%
- Veröffentlicht 02.08.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
qemu-nbd in QEMU (aka Quick Emulator) does not ignore SIGPIPE, which allows remote attackers to cause a denial of service (daemon crash) by disconnecting during a server-to-client reply attempt.
CVE-2017-10806
- EPSS 0.09%
- Veröffentlicht 02.08.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Stack-based buffer overflow in hw/usb/redirect.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (QEMU process crash) via vectors related to logging debug messages.
CVE-2017-11334
- EPSS 0.04%
- Veröffentlicht 02.08.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The address_space_write_continue function in exec.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds access and guest instance crash) by leveraging use of qemu_map_ram_ptr to access guest...
CVE-2017-11434
- EPSS 0.05%
- Veröffentlicht 25.07.2017 18:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
The dhcp_decode function in slirp/bootp.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) via a crafted DHCP options string.
CVE-2017-7980
- EPSS 0.17%
- Veröffentlicht 25.07.2017 14:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Heap-based buffer overflow in Cirrus CLGD 54xx VGA Emulator in Quick Emulator (Qemu) 2.8 and earlier allows local guest OS users to execute arbitrary code or cause a denial of service (crash) via vectors related to a VNC client updating its display a...
CVE-2017-9524
- EPSS 4.16%
- Veröffentlicht 06.07.2017 16:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The qemu-nbd server in QEMU (aka Quick Emulator), when built with the Network Block Device (NBD) Server support, allows remote attackers to cause a denial of service (segmentation fault and server crash) by leveraging failure to ensure that all initi...
CVE-2017-9373
- EPSS 0.1%
- Veröffentlicht 16.06.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Memory leak in QEMU (aka Quick Emulator), when built with IDE AHCI Emulation support, allows local guest OS privileged users to cause a denial of service (memory consumption) by repeatedly hot-unplugging the AHCI device.
CVE-2017-9374
- EPSS 0.1%
- Veröffentlicht 16.06.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Memory leak in QEMU (aka Quick Emulator), when built with USB EHCI Emulation support, allows local guest OS privileged users to cause a denial of service (memory consumption) by repeatedly hot-unplugging the device.