Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-4111

Опубликовано: 26 фев. 2014
Источник: debian
EPSS Низкий

Описание

Buffer overflow in the ccid_card_vscard_handle_message function in hw/ccid-card-passthru.c in QEMU before 0.15.2 and 1.x before 1.0-rc4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted VSC_ATR message.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
qemufixed0.15.1+dfsg-2package
qemunot-affectedlennypackage
qemunot-affectedsqueezepackage
xenfixed4.4.0-1package
xennot-affectedwheezypackage

Примечания

  • Xen switched to qemu-system in 4.4.0-1

  • Vulnerable code introduced after 0.14.50: http://git.qemu.org/?p=qemu.git;a=commit;h=edbb21363fbfe40e050f583df921484cbc31c79d

EPSS

Процентиль: 73%
0.00795
Низкий

Связанные уязвимости

ubuntu
больше 11 лет назад

Buffer overflow in the ccid_card_vscard_handle_message function in hw/ccid-card-passthru.c in QEMU before 0.15.2 and 1.x before 1.0-rc4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted VSC_ATR message.

redhat
больше 13 лет назад

Buffer overflow in the ccid_card_vscard_handle_message function in hw/ccid-card-passthru.c in QEMU before 0.15.2 and 1.x before 1.0-rc4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted VSC_ATR message.

nvd
больше 11 лет назад

Buffer overflow in the ccid_card_vscard_handle_message function in hw/ccid-card-passthru.c in QEMU before 0.15.2 and 1.x before 1.0-rc4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted VSC_ATR message.

github
больше 3 лет назад

Buffer overflow in the ccid_card_vscard_handle_message function in hw/ccid-card-passthru.c in QEMU before 0.15.2 and 1.x before 1.0-rc4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted VSC_ATR message.

oracle-oval
больше 13 лет назад

ELSA-2011-1777: qemu-kvm security update (IMPORTANT)

EPSS

Процентиль: 73%
0.00795
Низкий