CVE-2014-3615
- EPSS 0.09%
- Veröffentlicht 01.11.2014 23:55:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The VGA emulator in QEMU allows local guest users to read host memory by setting the display to a high resolution.
CVE-2014-5263
- EPSS 0.41%
- Veröffentlicht 26.08.2014 14:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
vmstate_xhci_event in hw/usb/hcd-xhci.c in QEMU 1.6.0 does not terminate the list with the VMSTATE_END_OF_LIST macro, which allows attackers to cause a denial of service (out-of-bounds access, infinite loop, and memory corruption) and possibly gain p...
CVE-2013-4544
- EPSS 0.11%
- Veröffentlicht 08.05.2014 14:29:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
hw/net/vmxnet3.c in QEMU 2.0.0-rc0, 1.7.1, and earlier allows local guest users to cause a denial of service or possibly execute arbitrary code via vectors related to (1) RX or (2) TX queue numbers or (3) interrupt indices. NOTE: some of these detai...
CVE-2014-2894
- EPSS 0.06%
- Veröffentlicht 23.04.2014 15:55:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Off-by-one error in the cmd_smart function in the smart self test in hw/ide/core.c in QEMU before 2.0 allows local users to have unspecified impact via a SMART EXECUTE OFFLINE command that triggers a buffer underflow and memory corruption.
CVE-2014-0150
- EPSS 0.55%
- Veröffentlicht 18.04.2014 14:55:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the virtio_net_handle_mac function in hw/net/virtio-net.c in QEMU 2.0 and earlier allows local guest users to execute arbitrary code via a MAC addresses table update request, which triggers a heap-based buffer overflow.
- EPSS 0.12%
- Veröffentlicht 01.04.2014 06:35:52
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in hw/scsi-disk.c in the SCSI subsystem in QEMU before 0.15.2, as used by Xen, might allow local guest users with permission to access the CD-ROM to cause a denial of service (guest crash) via a crafted SAI READ CAPACITY SCSI command....
CVE-2011-4111
- EPSS 0.8%
- Veröffentlicht 26.02.2014 15:55:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in the ccid_card_vscard_handle_message function in hw/ccid-card-passthru.c in QEMU before 0.15.2 and 1.x before 1.0-rc4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted VSC...
CVE-2013-4375
- EPSS 0.09%
- Veröffentlicht 19.01.2014 18:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The qdisk PV disk backend in qemu-xen in Xen 4.2.x and 4.3.x before 4.3.1, and qemu 1.1 and other versions, allows local HVM guests to cause a denial of service (domain grant reference consumption) via unspecified vectors.
CVE-2013-4377
- EPSS 0.1%
- Veröffentlicht 11.10.2013 22:55:40
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the virtio-pci implementation in Qemu 1.4.0 through 1.6.0 allows local users to cause a denial of service (daemon crash) by "hot-unplugging" a virtio device.
CVE-2013-4344
- EPSS 0.07%
- Veröffentlicht 04.10.2013 17:55:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in the SCSI implementation in QEMU, as used in Xen, when a SCSI controller has more than 256 attached devices, allows local users to gain privileges via a small transfer buffer in a REPORT LUNS command.