Show filters
120 Total Results
Displaying 81-90 of 120
Sort by:
Attacker Value
Unknown
CVE-2016-9911
Disclosure Date: December 23, 2016 (last updated November 25, 2024)
Quick Emulator (Qemu) built with the USB EHCI Emulation support is vulnerable to a memory leakage issue. It could occur while processing packet data in 'ehci_init_transfer'. A guest user/process could use this issue to leak host memory, resulting in DoS for a host.
0
Attacker Value
Unknown
CVE-2016-9907
Disclosure Date: December 23, 2016 (last updated November 25, 2024)
Quick Emulator (Qemu) built with the USB redirector usb-guest support is vulnerable to a memory leakage flaw. It could occur while destroying the USB redirector in 'usbredir_handle_destroy'. A guest user/process could use this issue to leak host memory, resulting in DoS for a host.
0
Attacker Value
Unknown
CVE-2016-9921
Disclosure Date: December 23, 2016 (last updated November 25, 2024)
Quick emulator (Qemu) built with the Cirrus CLGD 54xx VGA Emulator support is vulnerable to a divide by zero issue. It could occur while copying VGA data when cirrus graphics mode was set to be VGA. A privileged user inside guest could use this flaw to crash the Qemu process instance on the host, resulting in DoS.
0
Attacker Value
Unknown
CVE-2016-7422
Disclosure Date: December 10, 2016 (last updated November 25, 2024)
The virtqueue_map_desc function in hw/virtio/virtio.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) via a large I/O descriptor buffer length value.
0
Attacker Value
Unknown
CVE-2016-6888
Disclosure Date: December 10, 2016 (last updated November 08, 2023)
Integer overflow in the net_tx_pkt_init function in hw/net/net_tx_pkt.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (QEMU process crash) via the maximum fragmentation count, which triggers an unchecked multiplication and NULL pointer dereference.
0
Attacker Value
Unknown
CVE-2016-7466
Disclosure Date: December 10, 2016 (last updated November 25, 2024)
Memory leak in the usb_xhci_exit function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator), when the xhci uses msix, allows local guest OS administrators to cause a denial of service (memory consumption and possibly QEMU process crash) by repeatedly unplugging a USB device.
0
Attacker Value
Unknown
CVE-2016-8909
Disclosure Date: November 04, 2016 (last updated November 25, 2024)
The intel_hda_xfer function in hw/audio/intel-hda.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via an entry with the same value for buffer length and pointer position.
0
Attacker Value
Unknown
CVE-2016-8910
Disclosure Date: November 04, 2016 (last updated November 25, 2024)
The rtl8139_cplus_transmit function in hw/net/rtl8139.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) by leveraging failure to limit the ring descriptor count.
0
Attacker Value
Unknown
CVE-2016-8669
Disclosure Date: November 04, 2016 (last updated November 25, 2024)
The serial_update_parameters function in hw/char/serial.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (divide-by-zero error and QEMU process crash) via vectors involving a value of divider greater than baud base.
0
Attacker Value
Unknown
CVE-2016-8576
Disclosure Date: November 04, 2016 (last updated November 25, 2024)
The xhci_ring_fetch function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by leveraging failure to limit the number of link Transfer Request Blocks (TRB) to process.
0