Количество 23
Количество 23
BDU:2022-03597
Уязвимость функции qxl_cursor() эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю выполнить произвольный код
ALT-PU-2022-2009
ALT-PU-2022-2009: package `qemu` update to version 7.0.0-alt1
ALT-PU-2022-3081
ALT-PU-2022-3081: package `pve-qemu` update to version 7.1.0-alt1
CVE-2021-4207
A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.height` can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. A malicious privileged guest user could use this flaw to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process.
CVE-2021-4207
A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.height` can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. A malicious privileged guest user could use this flaw to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process.
CVE-2021-4207
A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.height` can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. A malicious privileged guest user could use this flaw to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process.
CVE-2021-4207
CVE-2021-4207
A flaw was found in the QXL display device emulation in QEMU. A double ...
ALT-PU-2022-3390
ALT-PU-2022-3390: package `pve-qemu` update to version 7.1.0-alt4
ALT-PU-2023-1830
ALT-PU-2023-1830: package `qemu` update to version 8.0.0-alt1.p10
GHSA-9p8r-v33g-4939
A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.height` can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. A malicious privileged guest user could use this flaw to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process.
SUSE-SU-2023:3015-1
Security update for qemu
SUSE-SU-2022:2254-1
Security update for qemu
ELSA-2022-9669
ELSA-2022-9669: qemu security update (IMPORTANT)
SUSE-SU-2023:2358-1
Security update for qemu
SUSE-SU-2022:2260-1
Security update for qemu
RLSA-2022:5821
Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update
ELSA-2022-9869
ELSA-2022-9869: qemu-kvm security update (IMPORTANT)
ELSA-2022-9862
ELSA-2022-9862: kvm_utils2 security update (IMPORTANT)
ELSA-2022-9700
ELSA-2022-9700: virt:kvm_utils security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2022-03597 Уязвимость функции qxl_cursor() эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.8 | 0% Низкий | больше 4 лет назад | |
ALT-PU-2022-2009 ALT-PU-2022-2009: package `qemu` update to version 7.0.0-alt1 | CVSS3: 8.8 | больше 4 лет назад | ||
ALT-PU-2022-3081 ALT-PU-2022-3081: package `pve-qemu` update to version 7.1.0-alt1 | CVSS3: 8.8 | почти 4 года назад | ||
CVE-2021-4207 A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.height` can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. A malicious privileged guest user could use this flaw to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process. | CVSS3: 8.2 | 0% Низкий | больше 4 лет назад | |
CVE-2021-4207 A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.height` can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. A malicious privileged guest user could use this flaw to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process. | CVSS3: 7.5 | 0% Низкий | больше 4 лет назад | |
CVE-2021-4207 A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.height` can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. A malicious privileged guest user could use this flaw to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process. | CVSS3: 8.2 | 0% Низкий | больше 4 лет назад | |
CVSS3: 8.2 | 0% Низкий | около 2 лет назад | ||
CVE-2021-4207 A flaw was found in the QXL display device emulation in QEMU. A double ... | CVSS3: 8.2 | 0% Низкий | больше 4 лет назад | |
ALT-PU-2022-3390 ALT-PU-2022-3390: package `pve-qemu` update to version 7.1.0-alt4 | CVSS3: 8.8 | почти 4 года назад | ||
ALT-PU-2023-1830 ALT-PU-2023-1830: package `qemu` update to version 8.0.0-alt1.p10 | CVSS3: 10 | больше 3 лет назад | ||
GHSA-9p8r-v33g-4939 A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.height` can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. A malicious privileged guest user could use this flaw to crash the QEMU process on the host or potentially execute arbitrary code within the context of the QEMU process. | CVSS3: 8.8 | 0% Низкий | больше 4 лет назад | |
SUSE-SU-2023:3015-1 Security update for qemu | около 3 лет назад | |||
SUSE-SU-2022:2254-1 Security update for qemu | около 4 лет назад | |||
ELSA-2022-9669 ELSA-2022-9669: qemu security update (IMPORTANT) | около 4 лет назад | |||
SUSE-SU-2023:2358-1 Security update for qemu | больше 3 лет назад | |||
SUSE-SU-2022:2260-1 Security update for qemu | около 4 лет назад | |||
RLSA-2022:5821 Moderate: virt:rhel and virt-devel:rhel security, bug fix, and enhancement update | около 4 лет назад | |||
ELSA-2022-9869 ELSA-2022-9869: qemu-kvm security update (IMPORTANT) | почти 4 года назад | |||
ELSA-2022-9862 ELSA-2022-9862: kvm_utils2 security update (IMPORTANT) | почти 4 года назад | |||
ELSA-2022-9700 ELSA-2022-9700: virt:kvm_utils security update (IMPORTANT) | около 4 лет назад |
Уязвимостей на страницу