- EPSS 0.42%
- Veröffentlicht 04.11.2016 21:59:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
The intel_hda_xfer function in hw/audio/intel-hda.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via an entry with the same value for buffer length and pointer posi...
- EPSS 0.36%
- Veröffentlicht 04.11.2016 21:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
The serial_update_parameters function in hw/char/serial.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (divide-by-zero error and QEMU process crash) via vectors involving a value of divider greater th...
- EPSS 0.39%
- Veröffentlicht 04.11.2016 21:59:05
- Zuletzt bearbeitet 06.05.2026 22:30:45
The rocker_io_writel function in hw/net/rocker/rocker.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (out-of-bounds read and QEMU process crash) by leveraging failure to limit DMA buffer size.
- EPSS 0.39%
- Veröffentlicht 04.11.2016 21:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The rc4030_write function in hw/dma/rc4030.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (divide-by-zero error and QEMU process crash) via a large interval timer reload value.
- EPSS 0.39%
- Veröffentlicht 04.11.2016 21:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
The v9fs_iov_vunmarshal function in fsdev/9p-iov-marshal.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) by sending an empty string parameter to a 9P o...
- EPSS 0.39%
- Veröffentlicht 04.11.2016 21:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
Memory leak in the v9fs_read function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption) via vectors related to an I/O read operation.
- EPSS 0.39%
- Veröffentlicht 04.11.2016 21:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The xhci_ring_fetch function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by leveraging failure to limit the number of link Transfer Request...
CVE-2016-7423
- EPSS 0.4%
- Veröffentlicht 10.10.2016 16:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
The mptsas_process_scsi_io_request function in QEMU (aka Quick Emulator), when built with LSI SAS1068 Host Bus emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vecto...
CVE-2016-7909
- EPSS 0.42%
- Veröffentlicht 05.10.2016 16:59:12
- Zuletzt bearbeitet 06.05.2026 22:30:45
The pcnet_rdra_addr function in hw/net/pcnet.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by setting the (1) receive or (2) transmit descriptor ring length to ...
CVE-2016-7908
- EPSS 0.41%
- Veröffentlicht 05.10.2016 16:59:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
The mcf_fec_do_tx function in hw/net/mcf_fec.c in QEMU (aka Quick Emulator) does not properly limit the buffer descriptor count when transmitting packets, which allows local guest OS administrators to cause a denial of service (infinite loop and QEMU...