Search

Found 220 results in 93ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2024-3447 medium 6.0 6.0 FIX slesdebian debian qemu 2y ago A heap-based buffer overflow was found in the SDHCI device emulation of QEMU. The bug is triggered when both `s->data_count` and the size of `s->fifo_buffer` are set to 0x200, leading to an out-of-b…
CVE-2023-3019 medium 6.5 6.5 FIX rhel rocky sles qemu 2y ago A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resu…
CVE-2018-17958 high 7.5 7.5 FIX slesdebian debianubuntu ubuntu qemuredhat 8y ago Qemu has a Buffer Overflow in rtl8139_do_receive in hw/net/rtl8139.c because an incorrect integer data type is used.
CVE-2017-17381 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago The Virtio Vring implementation in QEMU allows local OS guest users to cause a denial of service (divide-by-zero error and QEMU process crash) by unsetting vring alignment while updating Virtio rings.
CVE-2017-16845 critical 10.0 10.0 FIX slesdebian debianubuntu ubuntu qemu 9y ago hw/input/ps2.c in Qemu does not validate 'rptr' and 'count' values during guest migration, leading to out-of-bounds access.
CVE-2015-7549 medium 6.0 6.0 FIX slesdebian debian qemu 9y ago The MSI-X MMIO support in hw/pci/msix.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (NULL pointer dereference and QEMU process crash) by leveragin…
CVE-2015-7504 high 8.8 8.8 FIX debian debian qemu 9y ago Heap-based buffer overflow in the pcnet_receive function in hw/net/pcnet.c in QEMU allows guest OS administrators to cause a denial of service (instance crash) or possibly execute arbitrary code via …
CVE-2017-15289 medium 6.0 6.0 FIX slesdebian debian qemu 9y ago The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors rel…
CVE-2017-15268 high 7.5 7.5 FIX slesdebian debian qemu 9y ago Qemu through 2.10.0 allows remote attackers to cause a memory leak by triggering slow data-channel read operations, related to io/channel-websock.c.
CVE-2017-15038 medium 5.6 5.6 FIX slesdebian debian qemu 9y ago Race condition in the v9fs_xattrwalk function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local guest OS users to obtain sensitive information from host heap memory via vectors related to rea…
CVE-2017-14167 high 8.8 8.8 FIX slesdebian debian qemu 9y ago Integer overflow in the load_multiboot function in hw/i386/multiboot.c in QEMU (aka Quick Emulator) allows local guest OS users to execute arbitrary code on the host via crafted multiboot header addr…
CVE-2017-13711 high 7.5 7.5 FIX slesdebian debian qemu 9y ago Use-after-free vulnerability in the sofree function in slirp/socket.c in QEMU (aka Quick Emulator) allows attackers to cause a denial of service (QEMU instance crash) by leveraging failure to properl…
CVE-2017-13672 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago QEMU (aka Quick Emulator), when built with the VGA display emulator support, allows local guest OS privileged users to cause a denial of service (out-of-bounds read and QEMU process crash) via vector…
CVE-2017-13673 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago The vga display update in mis-calculated the region for the dirty bitmap snapshot in case split screen mode is used causing a denial of service (assertion failure) in the cpu_physical_memory_snapshot…
CVE-2017-8380 critical 9.8 9.8 FIX slesdebian debian qemu 9y ago Buffer overflow in the "megasas_mmio_write" function in Qemu 2.9.0 allows remote attackers to have unspecified impact via unknown vectors.
CVE-2017-12809 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago QEMU (aka Quick Emulator), when built with the IDE disk and CD/DVD-ROM Emulator support, allows local guest OS privileged users to cause a denial of service (NULL pointer dereference and QEMU process…
CVE-2014-0146 medium 5.5 5.5 FIX debian debian qemu 9y ago The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 and 2.x before 2.0.0 allows local users to cause a denial of service (NULL pointer dereference) via a crafted image which causes an…
CVE-2014-0145 high 7.8 7.8 FIX debian debian qemu 9y ago Multiple buffer overflows in QEMU before 1.7.2 and 2.x before 2.0.0, allow local users to cause a denial of service (crash) or possibly execute arbitrary code via a large (1) L1 table in the qcow2_sn…
CVE-2014-0143 high 7.0 7.0 FIX rheldebian debian qemu 9y ago Multiple integer overflows in the block drivers in QEMU, possibly before 2.0.0, allow local users to cause a denial of service (crash) via a crafted catalog size in (1) the parallels_open function in…
CVE-2014-0142 medium 5.5 5.5 FIX debian debian qemu 9y ago QEMU, possibly before 2.0.0, allows local users to cause a denial of service (divide-by-zero error and crash) via a zero value in the (1) tracks field to the seek_to_sector function in block/parallel…
CVE-2017-11334 medium 4.4 4.4 FIX slesdebian debian qemu 9y ago The address_space_write_continue function in exec.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds access and guest instance crash) by…
CVE-2017-10806 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago Stack-based buffer overflow in hw/usb/redirect.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (QEMU process crash) via vectors related to logging debug messag…
CVE-2017-10664 high 7.5 7.5 FIX sles rheldebian debian qemuredhat 9y ago qemu-nbd in QEMU (aka Quick Emulator) does not ignore SIGPIPE, which allows remote attackers to cause a denial of service (daemon crash) by disconnecting during a server-to-client reply attempt.
CVE-2017-11434 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago The dhcp_decode function in slirp/bootp.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) via a crafted DHCP options …
CVE-2017-7980 high 7.8 7.8 FIX sles rhelubuntu ubuntu qemuredhat 9y ago Heap-based buffer overflow in Cirrus CLGD 54xx VGA Emulator in Quick Emulator (Qemu) 2.8 and earlier allows local guest OS users to execute arbitrary code or cause a denial of service (crash) via vec…
CVE-2017-9524 high 7.5 7.5 FIX slesdebian debian qemu 9y ago The qemu-nbd server in QEMU (aka Quick Emulator), when built with the Network Block Device (NBD) Server support, allows remote attackers to cause a denial of service (segmentation fault and server cr…
CVE-2017-9503 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago QEMU (aka Quick Emulator), when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, allows local guest OS privileged users to cause a denial of service (NULL pointer dereference and Q…
CVE-2017-9375 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago QEMU (aka Quick Emulator), when built with USB xHCI controller emulator support, allows local guest OS privileged users to cause a denial of service (infinite recursive call) via vectors involving co…
CVE-2017-9374 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago Memory leak in QEMU (aka Quick Emulator), when built with USB EHCI Emulation support, allows local guest OS privileged users to cause a denial of service (memory consumption) by repeatedly hot-unplug…
CVE-2017-9373 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago Memory leak in QEMU (aka Quick Emulator), when built with IDE AHCI Emulation support, allows local guest OS privileged users to cause a denial of service (memory consumption) by repeatedly hot-unplug…
CVE-2017-9330 medium 5.6 5.6 FIX slesdebian debian qemu 9y ago QEMU (aka Quick Emulator) before 2.9.0, when built with the USB OHCI Emulation support, allows local guest OS users to cause a denial of service (infinite loop) by leveraging an incorrect return valu…
CVE-2017-9310 medium 5.6 5.6 FIX debian debian qemu 9y ago QEMU (aka Quick Emulator), when built with the e1000e NIC emulation support, allows local guest OS privileged users to cause a denial of service (infinite loop) via vectors related to setting the ini…
CVE-2017-9060 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago Memory leak in the virtio_gpu_set_scanout function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (memory consumption) via a large nu…
CVE-2017-8379 medium 6.5 6.5 FIX slesdebian debian qemuredhat 9y ago Memory leak in the keyboard input event handlers support in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption) by rapidly generati…
CVE-2017-8309 high 7.5 7.5 FIX slesdebian debian qemuredhat 9y ago Memory leak in the audio/audio.c in QEMU (aka Quick Emulator) allows remote attackers to cause a denial of service (memory consumption) by repeatedly starting and stopping audio capture.
CVE-2017-7493 high 7.8 7.8 FIX debian debian qemu 9y ago Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System(9pfs) support, is vulnerable to an improper access control issue. It could occur while accessing virtfs meta…
CVE-2017-8112 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (infinite loop and CPU consumption) via the message ring page count.
CVE-2017-8086 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago Memory leak in the v9fs_list_xattr function in hw/9pfs/9p-xattr.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (memory consumption) via vectors inv…
CVE-2017-8284 high 7.0 7.0 FIX slesdebian debian qemu 9y ago The disas_insn function in target/i386/translate.c in QEMU before 2.9.0, when TCG mode without hardware acceleration is used, does not limit the instruction size, which allows local users to gain pri…
CVE-2017-7718 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago hw/display/cirrus_vga_rop.h in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds read and QEMU process crash) via vectors related to copying…
CVE-2015-8619 high 7.5 7.5 FIX debian debian qemu 9y ago The Human Monitor Interface support in QEMU allows remote attackers to cause a denial of service (out-of-bounds write and application crash).
CVE-2015-8567 high 7.7 7.7 FIX slesdebian debianubuntu ubuntu qemususe 9y ago Memory leak in net/vmxnet3.c in QEMU allows remote attackers to cause a denial of service (memory consumption).
CVE-2015-8345 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago The eepro100 emulator in QEMU qemu-kvm blank allows local guest users to cause a denial of service (application crash and infinite loop) via vectors involving the command block list.
CVE-2015-8666 high 7.9 7.9 FIX debian debian qemu 9y ago Heap-based buffer overflow in QEMU, when built with the Q35-chipset-based PC system emulator.
CVE-2015-8613 medium 6.5 6.5 FIX debian debian qemu 9y ago Stack-based buffer overflow in the megasas_ctrl_get_info function in QEMU, when built with SCSI MegaRAID SAS HBA emulation support, allows local guest users to cause a denial of service (QEMU instanc…
CVE-2015-8568 medium 6.5 6.5 FIX debian debian qemu 9y ago Memory leak in QEMU, when built with a VMWARE VMXNET3 paravirtual NIC emulator support, allows local guest users to cause a denial of service (host memory consumption) by trying to activate the vmxne…
CVE-2015-8504 medium 6.5 6.5 FIX debian debian qemu 9y ago Qemu, when built with VNC display driver support, allows remote attackers to cause a denial of service (arithmetic exception and application crash) via crafted SetPixelFormat messages from a client.
CVE-2017-7377 medium 6.0 6.0 FIX slesdebian debian qemu 9y ago The (1) v9fs_create and (2) v9fs_lcreate functions in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allow local guest OS privileged users to cause a denial of service (file descriptor or memory consumpti…
CVE-2017-5973 medium 5.5 5.5 FIX slesdebian debian rhel qemuredhat 9y ago The xhci_kick_epctx function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (infinite loop and QEMU process crash) via vectors r…
CVE-2017-5931 high 8.8 8.8 FIX debian debian qemu 9y ago Integer overflow in hw/virtio/virtio-crypto.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (QEMU process crash) or possibly execute arbitrary code …
CVE-2016-9922 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago The cirrus_do_copy function in hw/display/cirrus_vga.c in QEMU (aka Quick Emulator), when cirrus graphics mode is VGA, allows local guest OS privileged users to cause a denial of service (divide-by-z…
CVE-2015-8556 critical 10.0 10.0 EXPFIX slesdebian debian qemu 9y ago Local privilege escalation vulnerability in the Gentoo QEMU package before 2.5.0-r1.
CVE-2017-6058 high 7.5 7.5 FIX debian debian qemu 9y ago Buffer overflow in NetRxPkt::ehdr_buf in hw/net/net_rx_pkt.c in QEMU (aka Quick Emulator), when the VLANSTRIP feature is enabled on the vmxnet3 device, allows remote attackers to cause a denial of se…
CVE-2017-5987 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator) allows local OS guest privileged users to cause a denial of service (infinite loop and QEMU process crash) …
CVE-2017-5857 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago Memory leak in the virgl_cmd_resource_unref function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (host memory consumption) via …
CVE-2017-5856 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago Memory leak in the megasas_handle_dcmd function in hw/scsi/megasas.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption) via Meg…
CVE-2017-5667 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds heap access and crash) o…
CVE-2017-5898 medium 5.5 5.5 FIX slessuse susedebian debian qemu 9y ago Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card device emulator support, allows local users to cause a …
CVE-2017-5579 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago Memory leak in the serial_exit_core function in hw/char/serial.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption and QEMU pro…
CVE-2017-5578 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago Memory leak in the virtio_gpu_resource_attach_backing function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (host memory consumptio…
CVE-2017-5552 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago Memory leak in the virgl_resource_attach_backing function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (host memory consumption)…
CVE-2017-5526 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago Memory leak in hw/audio/es1370.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption and QEMU process crash) via a large number o…
CVE-2017-5525 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago Memory leak in hw/audio/ac97.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption and QEMU process crash) via a large number of …
CVE-2016-10155 medium 6.0 6.0 FIX slesdebian debian qemu 9y ago Memory leak in hw/watchdog/wdt_i6300esb.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption and QEMU process crash) via a large…
CVE-2017-6505 medium 6.5 6.5 FIX slesdebian debian qemu 9y ago The ohci_service_ed_list function in hw/usb/hcd-ohci.c in QEMU (aka Quick Emulator) before 2.9.0 allows local guest OS users to cause a denial of service (infinite loop) via vectors involving the num…
CVE-2017-5957 medium 5.5 5.5 FIX slesdebian debian virglrenderer_projectqemu 9y ago Stack-based buffer overflow in the vrend_decode_set_framebuffer_state function in vrend_decode.c in virglrenderer before 926b9b3460a48f6454d8bbe9e44313d86a65447f, as used in Quick Emulator (QEMU), al…
CVE-2016-10029 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago The virtio_gpu_set_scanout function in QEMU (aka Quick Emulator) built with Virtio GPU Device emulator support allows local guest OS users to cause a denial of service (out-of-bounds read and process…
CVE-2016-10028 medium 5.5 5.5 FIX slesdebian debian qemu 9y ago The virgl_cmd_get_capset function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) built with Virtio GPU Device emulator support allows local guest OS users to cause a denial of service (ou…
CVE-2016-9381 high 7.5 7.5 FIX slesdebian debian qemucitrix 10y ago Race condition in QEMU in Xen allows local x86 HVM guest OS administrators to gain privileges by changing certain data on shared rings, aka a "double fetch" vulnerability.
CVE-2016-9916 medium 6.5 6.5 FIX slesdebian debian qemu 10y ago Memory leak in hw/9pfs/9p-proxy.c in QEMU (aka Quick Emulator) allows local privileged guest OS users to cause a denial of service (host memory consumption and possibly QEMU process crash) by leverag…
CVE-2016-9915 medium 6.5 6.5 FIX slesdebian debian qemu 10y ago Memory leak in hw/9pfs/9p-handle.c in QEMU (aka Quick Emulator) allows local privileged guest OS users to cause a denial of service (host memory consumption and possibly QEMU process crash) by levera…
CVE-2016-9914 medium 6.5 6.5 FIX slesdebian debian qemu 10y ago Memory leak in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local privileged guest OS users to cause a denial of service (host memory consumption and possibly QEMU process crash) by leveraging a …
CVE-2016-9913 medium 6.5 6.5 FIX slesdebian debian qemu 10y ago Memory leak in the v9fs_device_unrealize_common function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local privileged guest OS users to cause a denial of service (host memory consumption and …
CVE-2016-9846 medium 6.5 6.5 FIX slesdebian debian qemu 10y ago QEMU (aka Quick Emulator) built with the Virtio GPU Device emulator support is vulnerable to a memory leakage issue. It could occur while updating the cursor data in update_cursor_data_virgl. A guest…
CVE-2016-9845 medium 6.5 6.5 FIX slesdebian debian qemu 10y ago QEMU (aka Quick Emulator) built with the Virtio GPU Device emulator support is vulnerable to an information leakage issue. It could occur while processing 'VIRTIO_GPU_CMD_GET_CAPSET_INFO' command. A …
CVE-2016-9776 medium 5.5 5.5 FIX slesdebian debian qemu 10y ago QEMU (aka Quick Emulator) built with the ColdFire Fast Ethernet Controller emulator support is vulnerable to an infinite loop issue. It could occur while receiving packets in 'mcf_fec_receive'. A pri…
CVE-2016-2198 medium 5.5 5.5 FIX slesdebian debian qemu 10y ago QEMU (aka Quick Emulator) built with the USB EHCI emulation support is vulnerable to a null pointer dereference flaw. It could occur when an application attempts to write to EHCI capabilities registe…
CVE-2016-2197 medium 5.5 5.5 FIX slesdebian debian qemu 10y ago QEMU (aka Quick Emulator) built with an IDE AHCI emulation support is vulnerable to a null pointer dereference flaw. It occurs while unmapping the Frame Information Structure (FIS) and Command List B…
CVE-2016-1981 medium 5.5 5.5 FIX slesdebian debian qemu 10y ago QEMU (aka Quick Emulator) built with the e1000 NIC emulation support is vulnerable to an infinite loop issue. It could occur while processing data via transmit or receive descriptors, provided the in…
CVE-2016-1922 medium 5.5 5.5 FIX slesdebian debian qemu 10y ago QEMU (aka Quick Emulator) built with the TPR optimization for 32-bit Windows guests support is vulnerable to a null pointer dereference flaw. It occurs while doing I/O port write operations via hmp i…
CVE-2015-8818 medium 5.5 5.5 FIX debian debian qemu 10y ago The cpu_physical_memory_write_rom_internal function in exec.c in QEMU (aka Quick Emulator) does not properly skip MMIO regions, which allows local privileged guest users to cause a denial of service …
CVE-2015-8817 medium 5.5 5.5 FIX debian debian qemu 10y ago QEMU (aka Quick Emulator) built to use 'address_space_translate' to map an address to a MemoryRegionSection is vulnerable to an OOB r/w access issue. It could occur while doing pci_dma_read/write cal…
CVE-2015-8745 medium 5.5 5.5 FIX slesdebian debian qemu 10y ago QEMU (aka Quick Emulator) built with a VMWARE VMXNET3 paravirtual NIC emulator support is vulnerable to crash issue. It could occur while reading Interrupt Mask Registers (IMR). A privileged (CAP_SYS…
CVE-2015-8744 medium 5.5 5.5 FIX slesdebian debian qemu 10y ago QEMU (aka Quick Emulator) built with a VMWARE VMXNET3 paravirtual NIC emulator support is vulnerable to crash issue. It occurs when a guest sends a Layer-2 packet smaller than 22 bytes. A privileged …
CVE-2015-8743 high 7.1 7.1 FIX slesdebian debian qemu 10y ago QEMU (aka Quick Emulator) built with the NE2000 device emulation support is vulnerable to an OOB r/w access issue. It could occur while performing 'ioport' r/w operations. A privileged (CAP_SYS_RAWIO…
CVE-2015-8701 medium 6.5 6.5 FIX debian debian qemu 10y ago QEMU (aka Quick Emulator) built with the Rocker switch emulation support is vulnerable to an off-by-one error. It happens while processing transmit (tx) descriptors in 'tx_consume' routine, if a desc…
CVE-2016-9923 medium 5.5 5.5 FIX slesdebian debian qemu 10y ago Quick Emulator (Qemu) built with the 'chardev' backend support is vulnerable to a use after free issue. It could occur while hotplug and unplugging the device in the guest. A guest user/process could…
CVE-2016-9921 medium 6.5 6.5 FIX slesdebian debian rhel qemuredhat 10y ago Quick emulator (Qemu) built with the Cirrus CLGD 54xx VGA Emulator support is vulnerable to a divide by zero issue. It could occur while copying VGA data when cirrus graphics mode was set to be VGA. …
CVE-2016-9912 medium 6.5 6.5 FIX slesdebian debian qemu 10y ago Quick Emulator (Qemu) built with the Virtio GPU Device emulator support is vulnerable to a memory leakage issue. It could occur while destroying gpu resource object in 'virtio_gpu_resource_destroy'. …
CVE-2016-9911 medium 6.5 6.5 FIX slesdebian debian rhel qemuredhat 10y ago Quick Emulator (Qemu) built with the USB EHCI Emulation support is vulnerable to a memory leakage issue. It could occur while processing packet data in 'ehci_init_transfer'. A guest user/process coul…
CVE-2016-9908 low 3.3 3.3 FIX slesdebian debian qemu 10y ago Quick Emulator (Qemu) built with the Virtio GPU Device emulator support is vulnerable to an information leakage issue. It could occur while processing 'VIRTIO_GPU_CMD_GET_CAPSET' command. A guest use…
CVE-2016-9907 medium 6.5 6.5 FIX slesdebian debian rhel qemuredhat 10y ago Quick Emulator (Qemu) built with the USB redirector usb-guest support is vulnerable to a memory leakage flaw. It could occur while destroying the USB redirector in 'usbredir_handle_destroy'. A guest …
CVE-2016-7995 medium 6.0 6.0 FIX suse susedebian debian qemu 10y ago Memory leak in the ehci_process_itd function in hw/usb/hcd-ehci.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption) via a large numbe…
CVE-2016-7994 medium 6.0 6.0 FIX suse susedebian debian qemu 10y ago Memory leak in the virtio_gpu_resource_create_2d function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption…
CVE-2016-7466 medium 6.0 6.0 FIX slessuse suse rhel qemuredhat 10y ago Memory leak in the usb_xhci_exit function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator), when the xhci uses msix, allows local guest OS administrators to cause a denial of service (memory consump…
CVE-2016-7422 medium 6.0 6.0 FIX slessuse suse rhel qemuredhat 10y ago The virtqueue_map_desc function in hw/virtio/virtio.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) …
CVE-2016-7421 medium 4.4 4.4 FIX slesdebian debian qemu 10y ago The pvscsi_ring_pop_req_descr function in hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by…
CVE-2016-7170 medium 4.4 4.4 FIX slesdebian debiansuse suse qemu 10y ago The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via…
CVE-2016-7157 medium 4.4 4.4 FIX debian debian qemu 10y ago The (1) mptsas_config_manufacturing_1 and (2) mptsas_config_ioc_0 functions in hw/scsi/mptconfig.c in QEMU (aka Quick Emulator) allow local guest OS administrators to cause a denial of service (QEMU …
CVE-2016-7156 medium 4.4 4.4 FIX slesdebian debian qemu 10y ago The pvscsi_convert_sglist function in hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by lev…