Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown
CVE-2020-28916
Disclosure Date: December 04, 2020 (last updated February 22, 2025)
hw/net/e1000e_core.c in QEMU 5.0.0 has an infinite loop via an RX descriptor with a NULL buffer address.
0
Attacker Value
Unknown
CVE-2020-25624
Disclosure Date: November 30, 2020 (last updated February 22, 2025)
hw/usb/hcd-ohci.c in QEMU 5.0.0 has a stack-based buffer over-read via values obtained from the host controller driver.
0
Attacker Value
Unknown
CVE-2020-24352
Disclosure Date: October 16, 2020 (last updated February 22, 2025)
An issue was discovered in QEMU through 5.1.0. An out-of-bounds memory access was found in the ATI VGA device implementation. This flaw occurs in the ati_2d_blt() routine in hw/display/ati_2d.c while handling MMIO write operations through the ati_mm_write() callback. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service.
0
Attacker Value
Unknown
CVE-2020-25741
Disclosure Date: October 02, 2020 (last updated February 22, 2025)
fdctrl_write_data in hw/block/fdc.c in QEMU 5.0.0 has a NULL pointer dereference via a NULL block pointer for the current drive.
0
Attacker Value
Unknown
CVE-2020-25625
Disclosure Date: September 25, 2020 (last updated February 22, 2025)
hw/usb/hcd-ohci.c in QEMU 5.0.0 has an infinite loop when a TD list has a loop.
0
Attacker Value
Unknown
CVE-2020-25085
Disclosure Date: September 25, 2020 (last updated February 22, 2025)
QEMU 5.0.0 has a heap-based Buffer Overflow in flatview_read_continue in exec.c because hw/sd/sdhci.c mishandles a write operation in the SDHC_BLKSIZE case.
0
Attacker Value
Unknown
CVE-2020-25084
Disclosure Date: September 25, 2020 (last updated February 22, 2025)
QEMU 5.0.0 has a use-after-free in hw/usb/hcd-xhci.c because the usb_packet_map return value is not checked.
0