CVE-2015-5154
- EPSS 0.63%
- Veröffentlicht 12.08.2015 14:59:23
- Zuletzt bearbeitet 06.05.2026 22:30:45
Heap-based buffer overflow in the IDE subsystem in QEMU, as used in Xen 4.5.x and earlier, when the container has a CDROM drive enabled, allows local guest users to execute arbitrary code on the host via unspecified ATAPI commands.
CVE-2015-3209
- EPSS 9.67%
- Veröffentlicht 15.06.2015 15:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
Heap-based buffer overflow in the PCNET controller in QEMU allows remote attackers to execute arbitrary code by sending a packet with TXSTATUS_STARTPACKET set and then a crafted packet with TXSTATUS_DEVICEOWNS set.
CVE-2015-4106
- EPSS 0.48%
- Veröffentlicht 03.06.2015 20:59:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
QEMU does not properly restrict write access to the PCI config space for certain PCI pass-through devices, which might allow local x86 HVM guests to gain privileges, cause a denial of service (host crash), obtain sensitive information, or possibly ha...
CVE-2015-3456
- EPSS 15.28%
- Veröffentlicht 13.05.2015 18:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The Floppy Disk Controller (FDC) in QEMU, as used in Xen 4.5.x and earlier and KVM, allows local guest users to cause a denial of service (out-of-bounds write and guest crash) or possibly execute arbitrary code via the (1) FD_CMD_READ_ID, (2) FD_CMD_...
CVE-2014-9718
- EPSS 0.41%
- Veröffentlicht 21.04.2015 16:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The (1) BMDMA and (2) AHCI HBA interfaces in the IDE functionality in QEMU 1.0 through 2.1.3 have multiple interpretations of a function's return value, which allows guest OS users to cause a host OS denial of service (memory consumption or infinite ...
CVE-2014-7840
- EPSS 4.12%
- Veröffentlicht 12.12.2014 15:59:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
The host_from_stream_offset function in arch_init.c in QEMU, when loading RAM during migration, allows remote attackers to execute arbitrary code via a crafted (1) offset or (2) length value in savevm data.
CVE-2014-8106
- EPSS 0.6%
- Veröffentlicht 08.12.2014 16:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
Heap-based buffer overflow in the Cirrus VGA emulator (hw/display/cirrus_vga.c) in QEMU before 2.2.0 allows local guest users to execute arbitrary code via vectors related to blit regions. NOTE: this vulnerability exists because an incomplete fix for...
CVE-2014-5388
- EPSS 0.39%
- Veröffentlicht 15.11.2014 21:59:05
- Zuletzt bearbeitet 06.05.2026 22:30:45
Off-by-one error in the pci_read function in the ACPI PCI hotplug interface (hw/acpi/pcihp.c) in QEMU allows local guest users to obtain sensitive information and have other unspecified impact related to a crafted PCI device that triggers memory corr...
- EPSS 3.74%
- Veröffentlicht 14.11.2014 15:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
The set_pixel_format function in ui/vnc.c in QEMU allows remote attackers to cause a denial of service (crash) via a small bytes_per_pixel value.
CVE-2014-3689
- EPSS 0.39%
- Veröffentlicht 14.11.2014 15:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The vmware-vga driver (hw/display/vmware_vga.c) in QEMU allows local guest users to write to qemu memory locations and gain privileges via unspecified parameters related to rectangle handling.