Qemu

Qemu

425 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.08%
  • Veröffentlicht 04.11.2016 21:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The rc4030_write function in hw/dma/rc4030.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (divide-by-zero error and QEMU process crash) via a large interval timer reload value.

  • EPSS 0.11%
  • Veröffentlicht 04.11.2016 21:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The v9fs_iov_vunmarshal function in fsdev/9p-iov-marshal.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) by sending an empty string parameter to a 9P o...

  • EPSS 0.11%
  • Veröffentlicht 04.11.2016 21:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Memory leak in the v9fs_read function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption) via vectors related to an I/O read operation.

  • EPSS 0.11%
  • Veröffentlicht 04.11.2016 21:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The xhci_ring_fetch function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by leveraging failure to limit the number of link Transfer Request...

  • EPSS 0.14%
  • Veröffentlicht 10.10.2016 16:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The mptsas_process_scsi_io_request function in QEMU (aka Quick Emulator), when built with LSI SAS1068 Host Bus emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vecto...

  • EPSS 0.14%
  • Veröffentlicht 05.10.2016 16:59:12
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The pcnet_rdra_addr function in hw/net/pcnet.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by setting the (1) receive or (2) transmit descriptor ring length to ...

  • EPSS 0.13%
  • Veröffentlicht 05.10.2016 16:59:11
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The mcf_fec_do_tx function in hw/net/mcf_fec.c in QEMU (aka Quick Emulator) does not properly limit the buffer descriptor count when transmitting packets, which allows local guest OS administrators to cause a denial of service (infinite loop and QEMU...

  • EPSS 0.11%
  • Veröffentlicht 05.10.2016 16:59:10
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The imx_fec_do_tx function in hw/net/imx_fec.c in QEMU (aka Quick Emulator) does not properly limit the buffer descriptor count when transmitting packets, which allows local guest OS administrators to cause a denial of service (infinite loop and QEMU...

  • EPSS 20.2%
  • Veröffentlicht 05.10.2016 16:59:05
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Heap-based buffer overflow in the .receive callback of xlnx.xps-ethernetlite in QEMU (aka Quick Emulator) allows attackers to execute arbitrary code on the QEMU host via a large ethlite packet.

  • EPSS 0.17%
  • Veröffentlicht 07.09.2016 18:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The esp_do_dma function in hw/scsi/esp.c in QEMU (aka Quick Emulator), when built with ESP/NCR53C9x controller emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) or execut...