Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown
CVE-2015-8817
Disclosure Date: December 29, 2016 (last updated November 25, 2024)
QEMU (aka Quick Emulator) built to use 'address_space_translate' to map an address to a MemoryRegionSection is vulnerable to an OOB r/w access issue. It could occur while doing pci_dma_read/write calls. Affects QEMU versions >= 1.6.0 and <= 2.3.1. A privileged user inside guest could use this flaw to crash the guest instance resulting in DoS.
0
Attacker Value
Unknown
CVE-2014-9718
Disclosure Date: April 21, 2015 (last updated October 05, 2023)
The (1) BMDMA and (2) AHCI HBA interfaces in the IDE functionality in QEMU 1.0 through 2.1.3 have multiple interpretations of a function's return value, which allows guest OS users to cause a host OS denial of service (memory consumption or infinite loop, and system crash) via a PRDT with zero complete sectors, related to the bmdma_prepare_buf and ahci_dma_prepare_buf functions.
0
Attacker Value
Unknown
CVE-2013-4151
Disclosure Date: November 04, 2014 (last updated October 05, 2023)
The virtio_load function in virtio/virtio.c in QEMU 1.x before 1.7.2 allows remote attackers to execute arbitrary code via a crafted savevm image, which triggers an out-of-bounds write.
0
Attacker Value
Unknown
CVE-2013-4148
Disclosure Date: November 04, 2014 (last updated October 05, 2023)
Integer signedness error in the virtio_net_load function in hw/net/virtio-net.c in QEMU 1.x before 1.7.2 allows remote attackers to execute arbitrary code via a crafted savevm image, which triggers a buffer overflow.
0
Attacker Value
Unknown
CVE-2013-4150
Disclosure Date: November 04, 2014 (last updated October 05, 2023)
The virtio_net_load function in hw/net/virtio-net.c in QEMU 1.5.0 through 1.7.x before 1.7.2 allows remote attackers to cause a denial of service or possibly execute arbitrary code via vectors in which the value of curr_queues is greater than max_queues, which triggers an out-of-bounds write.
0
Attacker Value
Unknown
CVE-2013-4149
Disclosure Date: November 04, 2014 (last updated October 05, 2023)
Buffer overflow in virtio_net_load function in net/virtio-net.c in QEMU 1.3.0 through 1.7.x before 1.7.2 might allow remote attackers to execute arbitrary code via a large MAC table.
0
Attacker Value
Unknown
CVE-2014-0150
Disclosure Date: April 18, 2014 (last updated October 05, 2023)
Integer overflow in the virtio_net_handle_mac function in hw/net/virtio-net.c in QEMU 2.0 and earlier allows local guest users to execute arbitrary code via a MAC addresses table update request, which triggers a heap-based buffer overflow.
0