Skip to main content

Vendor archive

qemu CVEs

Beta · best-effort

421 CVEs tagged to vendor qemu14 Critical, 122 High, 248 Medium, 37 Low, 0 Unrated.

CVE-2017-8380

Published Aug 28, 2017

Buffer overflow in the "megasas_mmio_write" function in Qemu 2.9.0 allows remote attackers to have unspecified impact via unknown vectors.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-12809

Published Aug 23, 2017

QEMU (aka Quick Emulator), when built with the IDE disk and CD/DVD-ROM Emulator support, allows local guest OS privileged users to cause a denial of service (NULL pointer derefere…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2014-0146

Published Aug 10, 2017

The qcow2_open function in the (block/qcow2.c) in QEMU before 1.7.2 and 2.x before 2.0.0 allows local users to cause a denial of service (NULL pointer dereference) via a crafted i…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0145

Published Aug 10, 2017

Multiple buffer overflows in QEMU before 1.7.2 and 2.x before 2.0.0, allow local users to cause a denial of service (crash) or possibly execute arbitrary code via a large (1) L1 t…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2014-0143

Published Aug 10, 2017

Multiple integer overflows in the block drivers in QEMU, possibly before 2.0.0, allow local users to cause a denial of service (crash) via a crafted catalog size in (1) the parall…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort

CVE-2014-0142

Published Aug 10, 2017

QEMU, possibly before 2.0.0, allows local users to cause a denial of service (divide-by-zero error and crash) via a zero value in the (1) tracks field to the seek_to_sector functi…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-11334

Published Aug 2, 2017

The address_space_write_continue function in exec.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds access and gues…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-10806

Published Aug 2, 2017

Stack-based buffer overflow in hw/usb/redirect.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (QEMU process crash) via vectors related to…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-10664

Published Aug 2, 2017

qemu-nbd in QEMU (aka Quick Emulator) does not ignore SIGPIPE, which allows remote attackers to cause a denial of service (daemon crash) by disconnecting during a server-to-client…

CVSS 7.5 · High

CVE-2017-11434

Published Jul 25, 2017

The dhcp_decode function in slirp/bootp.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) via a c…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-7980

Published Jul 25, 2017

Heap-based buffer overflow in Cirrus CLGD 54xx VGA Emulator in Quick Emulator (Qemu) 2.8 and earlier allows local guest OS users to execute arbitrary code or cause a denial of ser…

CVSS 7.8 · High

CVE-2017-9524

Published Jul 6, 2017

The qemu-nbd server in QEMU (aka Quick Emulator), when built with the Network Block Device (NBD) Server support, allows remote attackers to cause a denial of service (segmentation…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-9503

Published Jun 16, 2017

QEMU (aka Quick Emulator), when built with MegaRAID SAS 8708EM2 Host Bus Adapter emulation support, allows local guest OS privileged users to cause a denial of service (NULL point…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-9375

Published Jun 16, 2017

QEMU (aka Quick Emulator), when built with USB xHCI controller emulator support, allows local guest OS privileged users to cause a denial of service (infinite recursive call) via…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-9374

Published Jun 16, 2017

Memory leak in QEMU (aka Quick Emulator), when built with USB EHCI Emulation support, allows local guest OS privileged users to cause a denial of service (memory consumption) by r…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-9373

Published Jun 16, 2017

Memory leak in QEMU (aka Quick Emulator), when built with IDE AHCI Emulation support, allows local guest OS privileged users to cause a denial of service (memory consumption) by r…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-9330

Published Jun 8, 2017

QEMU (aka Quick Emulator) before 2.9.0, when built with the USB OHCI Emulation support, allows local guest OS users to cause a denial of service (infinite loop) by leveraging an i…

CVSS 5.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-9310

Published Jun 8, 2017

QEMU (aka Quick Emulator), when built with the e1000e NIC emulation support, allows local guest OS privileged users to cause a denial of service (infinite loop) via vectors relate…

CVSS 5.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-9060

Published Jun 1, 2017

Memory leak in the virtio_gpu_set_scanout function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (memory consump…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-7493

Published May 17, 2017

Quick Emulator (Qemu) built with the VirtFS, host directory sharing via Plan 9 File System(9pfs) support, is vulnerable to an improper access control issue. It could occur while a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-8112

Published May 2, 2017

hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (infinite loop and CPU consumption) via the message ring page…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-8086

Published May 2, 2017

Memory leak in the v9fs_list_xattr function in hw/9pfs/9p-xattr.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (memory consumpt…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-8284

Published Apr 26, 2017

The disas_insn function in target/i386/translate.c in QEMU before 2.9.0, when TCG mode without hardware acceleration is used, does not limit the instruction size, which allows loc…

CVSS 7.0 · High
Vendor/product tagsBeta · best-effort
Showing 201-225 of 421 CVEsPage 9 of 17