CVE-2014-0182
- EPSS 3.5%
- Veröffentlicht 04.11.2014 21:55:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in the virtio_load function in hw/virtio/virtio.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a crafted config length in a savevm image.
CVE-2014-0222
- EPSS 1%
- Veröffentlicht 04.11.2014 21:55:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the qcow_open function in block/qcow.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service (crash) via a large L2 table in a QCOW version 1 image.
CVE-2014-0223
- EPSS 0.09%
- Veröffentlicht 04.11.2014 21:55:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the qcow_open function in block/qcow.c in QEMU before 1.7.2 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a large image size, which triggers a buffer overflow or out-of-bounds read...
CVE-2014-3461
- EPSS 3.34%
- Veröffentlicht 04.11.2014 21:55:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
hw/usb/bus.c in QEMU 1.6.2 allows remote attackers to execute arbitrary code via crafted savevm data, which triggers a heap-based buffer overflow, related to "USB post load checks."
CVE-2013-4148
- EPSS 3.13%
- Veröffentlicht 04.11.2014 21:55:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer signedness error in the virtio_net_load function in hw/net/virtio-net.c in QEMU 1.x before 1.7.2 allows remote attackers to execute arbitrary code via a crafted savevm image, which triggers a buffer overflow.
CVE-2013-4149
- EPSS 4.08%
- Veröffentlicht 04.11.2014 21:55:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in virtio_net_load function in net/virtio-net.c in QEMU 1.3.0 through 1.7.x before 1.7.2 might allow remote attackers to execute arbitrary code via a large MAC table.
CVE-2013-4150
- EPSS 2.46%
- Veröffentlicht 04.11.2014 21:55:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
The virtio_net_load function in hw/net/virtio-net.c in QEMU 1.5.0 through 1.7.x before 1.7.2 allows remote attackers to cause a denial of service or possibly execute arbitrary code via vectors in which the value of curr_queues is greater than max_que...
CVE-2013-4151
- EPSS 1.39%
- Veröffentlicht 04.11.2014 21:55:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
The virtio_load function in virtio/virtio.c in QEMU 1.x before 1.7.2 allows remote attackers to execute arbitrary code via a crafted savevm image, which triggers an out-of-bounds write.
CVE-2013-4526
- EPSS 2.55%
- Veröffentlicht 04.11.2014 21:55:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in hw/ide/ahci.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via vectors related to migrating ports.
CVE-2013-4527
- EPSS 4.08%
- Veröffentlicht 04.11.2014 21:55:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in hw/timer/hpet.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via vectors related to the number of timers.