- EPSS 0.11%
- Veröffentlicht 26.04.2017 14:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The disas_insn function in target/i386/translate.c in QEMU before 2.9.0, when TCG mode without hardware acceleration is used, does not limit the instruction size, which allows local users to gain privileges by creating a modified basic block that inj...
CVE-2017-7718
- EPSS 0.13%
- Veröffentlicht 20.04.2017 17:59:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
hw/display/cirrus_vga_rop.h in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds read and QEMU process crash) via vectors related to copying VGA data via the cirrus_bitblt_rop_fwd_transp_ and...
CVE-2015-8345
- EPSS 0.07%
- Veröffentlicht 13.04.2017 17:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The eepro100 emulator in QEMU qemu-kvm blank allows local guest users to cause a denial of service (application crash and infinite loop) via vectors involving the command block list.
CVE-2015-8567
- EPSS 3.51%
- Veröffentlicht 13.04.2017 17:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Memory leak in net/vmxnet3.c in QEMU allows remote attackers to cause a denial of service (memory consumption).
CVE-2015-8619
- EPSS 3.32%
- Veröffentlicht 13.04.2017 17:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Human Monitor Interface support in QEMU allows remote attackers to cause a denial of service (out-of-bounds write and application crash).
CVE-2015-8504
- EPSS 2.81%
- Veröffentlicht 11.04.2017 19:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Qemu, when built with VNC display driver support, allows remote attackers to cause a denial of service (arithmetic exception and application crash) via crafted SetPixelFormat messages from a client.
CVE-2015-8568
- EPSS 0.06%
- Veröffentlicht 11.04.2017 19:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Memory leak in QEMU, when built with a VMWARE VMXNET3 paravirtual NIC emulator support, allows local guest users to cause a denial of service (host memory consumption) by trying to activate the vmxnet3 device repeatedly.
CVE-2015-8613
- EPSS 0.1%
- Veröffentlicht 11.04.2017 19:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Stack-based buffer overflow in the megasas_ctrl_get_info function in QEMU, when built with SCSI MegaRAID SAS HBA emulation support, allows local guest users to cause a denial of service (QEMU instance crash) via a crafted SCSI controller CTRL_GET_INF...
CVE-2015-8666
- EPSS 0.08%
- Veröffentlicht 11.04.2017 19:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Heap-based buffer overflow in QEMU, when built with the Q35-chipset-based PC system emulator.
- EPSS 0.08%
- Veröffentlicht 10.04.2017 15:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The (1) v9fs_create and (2) v9fs_lcreate functions in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allow local guest OS privileged users to cause a denial of service (file descriptor or memory consumption) via vectors related to an already in-use fid.