Show filters
26 Total Results
Displaying 21-26 of 26
Sort by:
Attacker Value
Unknown

CVE-2013-4531

Disclosure Date: November 04, 2014 (last updated October 05, 2023)
Buffer overflow in target-arm/machine.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a negative value in cpreg_vmstate_array_len in a savevm image.
0
Attacker Value
Unknown

CVE-2013-4544

Disclosure Date: May 08, 2014 (last updated November 08, 2023)
hw/net/vmxnet3.c in QEMU 2.0.0-rc0, 1.7.1, and earlier allows local guest users to cause a denial of service or possibly execute arbitrary code via vectors related to (1) RX or (2) TX queue numbers or (3) interrupt indices. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2014-2894

Disclosure Date: April 23, 2014 (last updated October 05, 2023)
Off-by-one error in the cmd_smart function in the smart self test in hw/ide/core.c in QEMU before 2.0 allows local users to have unspecified impact via a SMART EXECUTE OFFLINE command that triggers a buffer underflow and memory corruption.
0
Attacker Value
Unknown

CVE-2014-0150

Disclosure Date: April 18, 2014 (last updated October 05, 2023)
Integer overflow in the virtio_net_handle_mac function in hw/net/virtio-net.c in QEMU 2.0 and earlier allows local guest users to execute arbitrary code via a MAC addresses table update request, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2013-4377

Disclosure Date: October 11, 2013 (last updated October 05, 2023)
Use-after-free vulnerability in the virtio-pci implementation in Qemu 1.4.0 through 1.6.0 allows local users to cause a denial of service (daemon crash) by "hot-unplugging" a virtio device.
0
Attacker Value
Unknown

CVE-2013-2007

Disclosure Date: May 21, 2013 (last updated October 05, 2023)
The qemu guest agent in Qemu 1.4.1 and earlier, as used by Xen, when started in daemon mode, uses weak permissions for certain files, which allows local users to read and write to these files.
0