CVE-2016-10028
- EPSS 0.43%
- Veröffentlicht 27.02.2017 22:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The virgl_cmd_get_capset function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) built with Virtio GPU Device emulator support allows local guest OS users to cause a denial of service (out-of-bounds read and process crash) via a VIRTIO_GP...
CVE-2016-10029
- EPSS 0.41%
- Veröffentlicht 27.02.2017 22:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The virtio_gpu_set_scanout function in QEMU (aka Quick Emulator) built with Virtio GPU Device emulator support allows local guest OS users to cause a denial of service (out-of-bounds read and process crash) via a scanout id in a VIRTIO_GPU_CMD_SET_SC...
CVE-2016-9381
- EPSS 0.3%
- Veröffentlicht 23.01.2017 21:59:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
Race condition in QEMU in Xen allows local x86 HVM guest OS administrators to gain privileges by changing certain data on shared rings, aka a "double fetch" vulnerability.
CVE-2015-8701
- EPSS 0.39%
- Veröffentlicht 29.12.2016 22:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
QEMU (aka Quick Emulator) built with the Rocker switch emulation support is vulnerable to an off-by-one error. It happens while processing transmit (tx) descriptors in 'tx_consume' routine, if a descriptor was to have more than allowed (ROCKER_TX_FRA...
CVE-2015-8743
- EPSS 0.45%
- Veröffentlicht 29.12.2016 22:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
QEMU (aka Quick Emulator) built with the NE2000 device emulation support is vulnerable to an OOB r/w access issue. It could occur while performing 'ioport' r/w operations. A privileged (CAP_SYS_RAWIO) user/process could use this flaw to leak or corru...
CVE-2015-8744
- EPSS 0.4%
- Veröffentlicht 29.12.2016 22:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
QEMU (aka Quick Emulator) built with a VMWARE VMXNET3 paravirtual NIC emulator support is vulnerable to crash issue. It occurs when a guest sends a Layer-2 packet smaller than 22 bytes. A privileged (CAP_SYS_RAWIO) guest user could use this flaw to c...
CVE-2015-8745
- EPSS 0.4%
- Veröffentlicht 29.12.2016 22:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
QEMU (aka Quick Emulator) built with a VMWARE VMXNET3 paravirtual NIC emulator support is vulnerable to crash issue. It could occur while reading Interrupt Mask Registers (IMR). A privileged (CAP_SYS_RAWIO) guest user could use this flaw to crash the...
CVE-2015-8817
- EPSS 0.4%
- Veröffentlicht 29.12.2016 22:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
QEMU (aka Quick Emulator) built to use 'address_space_translate' to map an address to a MemoryRegionSection is vulnerable to an OOB r/w access issue. It could occur while doing pci_dma_read/write calls. Affects QEMU versions >= 1.6.0 and <= 2.3.1. A ...
CVE-2015-8818
- EPSS 0.41%
- Veröffentlicht 29.12.2016 22:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The cpu_physical_memory_write_rom_internal function in exec.c in QEMU (aka Quick Emulator) does not properly skip MMIO regions, which allows local privileged guest users to cause a denial of service (guest crash) via unspecified vectors.
CVE-2016-1922
- EPSS 0.43%
- Veröffentlicht 29.12.2016 22:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
QEMU (aka Quick Emulator) built with the TPR optimization for 32-bit Windows guests support is vulnerable to a null pointer dereference flaw. It occurs while doing I/O port write operations via hmp interface. In that, 'current_cpu' remains null, whic...