qemu

419 tracked vulnerabilities.

CVE-2017-17381 MEDIUM
QEMU < 2.10.2 - Denial of Service via Virtio Vring Alignment Update
Dec 07, 2017
CVSS 6.5
EPSS 0.00
CVE-2017-16845 CRITICAL
Qemu < 2.11.2 - Out-of-Bounds Access in PS2 Migration Handler
Nov 17, 2017
CVSS 10.0
EPSS 0.02
CVE-2017-15289 MEDIUM
Qemu < 2.10.2 - Out-of-bounds Write in Cirrus VGA Mode4and5 Write Functions
Oct 16, 2017
CVSS 6.0
EPSS 0.00
CVE-2017-15268 HIGH
Qemu < 2.10.0 - Memory Leak via Slow Data-Channel Read Operations
Oct 12, 2017
CVSS 7.5
EPSS 0.02
CVE-2017-15038 MEDIUM
QEMU < 2.9.1 - Information Disclosure via v9fs_xattrwalk Race Condition
Oct 10, 2017
CVSS 5.6
EPSS 0.00
CVE-2017-14167 HIGH
QEMU < 2.10.2 - Integer Overflow in load_multiboot Function
Sep 08, 2017
CVSS 8.8
EPSS 0.00
CVE-2017-13711 HIGH
QEMU < 2.10.1 - Use-After-Free in slirp/socket.c sofree Function
Sep 01, 2017
CVSS 7.5
EPSS 0.01
CVE-2017-13672 MEDIUM
QEMU < 2.10.2 - Denial of Service via VGA Display Update
Sep 01, 2017
CVSS 5.5
EPSS 0.01
CVE-2017-13673 MEDIUM
qemu - Denial of Service via VGA Display Dirty Bitmap Snapshot
Aug 29, 2017
CVSS 6.5
EPSS 0.01
CVE-2017-8380 CRITICAL
Qemu 2.9.0 - Buffer Overflow in megasas_mmio_write
Aug 28, 2017
CVSS 9.8
EPSS 0.03
CVE-2017-12809 MEDIUM
QEMU < 2.9.1 - Denial of Service via Empty CDROM Device Flush
Aug 23, 2017
CVSS 6.5
EPSS 0.00
CVE-2017-11334 MEDIUM
QEMU < 2.9.1 - Denial of Service via address_space_write_continue Out-of-bounds Read
Aug 02, 2017
CVSS 4.4
EPSS 0.00
CVE-2017-10806 MEDIUM
QEMU < 2.9.1 - Denial of Service via Stack-Based Buffer Overflow in USB Redirect Debug Logging
Aug 02, 2017
CVSS 5.5
EPSS 0.00
CVE-2017-10664 HIGH
QEMU < 2.9.1 - Denial of Service via qemu-nbd SIGPIPE Handling
Aug 02, 2017
CVSS 7.5
EPSS 0.05
CVE-2017-11434 MEDIUM
QEMU < 2.9.1 - Denial of Service via DHCP Options String
Jul 25, 2017
CVSS 5.5
EPSS 0.00
CVE-2017-7980 HIGH
Qemu < 2.8 - Heap-based Buffer Overflow in Cirrus CLGD 54xx VGA Emulator
Jul 25, 2017
CVSS 7.8
EPSS 0.00
CVE-2017-9524 HIGH
QEMU < 2.9.1 - Denial of Service via NBD Server Initialization Failure
Jul 06, 2017
CVSS 7.5
EPSS 0.02
CVE-2017-9503 MEDIUM
QEMU < 2.9.1 - Denial of Service via MegaRAID SAS 8708EM2 Command Processing
Jun 16, 2017
CVSS 5.5
EPSS 0.00
CVE-2017-9375 MEDIUM
QEMU < 2.8.1.1 - Denial of Service via USB xHCI Controller Emulator
Jun 16, 2017
CVSS 5.5
EPSS 0.00
CVE-2017-9374 MEDIUM
QEMU < 2.8.1.1 - Memory Leak via USB EHCI Emulation Hot-Unplug
Jun 16, 2017
CVSS 5.5
EPSS 0.00
CVE-2017-9373 MEDIUM
QEMU < 2.8.1.1 - Denial of Service via AHCI Device Hot-Unplug
Jun 16, 2017
CVSS 5.5
EPSS 0.00
CVE-2017-9330 MEDIUM
QEMU < 2.9.0 - Denial of Service via USB OHCI Emulation Infinite Loop
Jun 08, 2017
CVSS 5.6
EPSS 0.00
CVE-2017-9310 MEDIUM
QEMU < 2.8.1.1 - Denial of Service via e1000e NIC Descriptor Buffer Handling
Jun 08, 2017
CVSS 5.6
EPSS 0.00
CVE-2017-9060 MEDIUM
QEMU < 2.8.1.1 - Denial of Service via Virtio GPU Scanout Command
Jun 01, 2017
CVSS 5.5
EPSS 0.00
CVE-2017-8379 MEDIUM
QEMU < 2.9.1 - Denial of Service via Keyboard Input Event Handler Memory Leak
May 23, 2017
CVSS 6.5
EPSS 0.00
Products
qemu 419