Количество 24
Количество 24
BDU:2022-05840
Уязвимость эмулятора аппаратного обеспечения QEMU, связанная с выделением неограниченной памяти, позволяющая нарушителю вызвать отказ в обслуживании
ALT-PU-2024-1248
ALT-PU-2024-1248: package `qemu` update to version 8.2.0-alt1
CVE-2021-3527
A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.
CVE-2021-3527
A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.
CVE-2021-3527
A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.
CVE-2021-3527
A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single large transfer request to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack resulting in a denial of service.
CVE-2021-3527
A flaw was found in the USB redirector device (usb-redir) of QEMU. Sma ...
ALT-PU-2021-2713
ALT-PU-2021-2713: package `qemu` update to version 6.1.0-alt1
ALT-PU-2021-3363
ALT-PU-2021-3363: package `qemu` update to version 6.1.0-alt2
ALT-PU-2024-6235
ALT-PU-2024-6235: package `qemu` update to version 8.2.2-alt0.p10
GHSA-fwv2-775h-qv4v
A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service.
openSUSE-SU-2021:2858-1
Security update for qemu
openSUSE-SU-2021:2789-1
Security update for qemu
SUSE-SU-2021:3575-1
Security update for qemu
SUSE-SU-2021:2858-1
Security update for qemu
SUSE-SU-2021:2813-1
Security update for qemu
SUSE-SU-2021:2789-1
Security update for qemu
ELSA-2021-9425
ELSA-2021-9425: qemu security update (IMPORTANT)
SUSE-SU-2021:3635-1
Security update for qemu
SUSE-SU-2021:3614-1
Security update for qemu
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2022-05840 Уязвимость эмулятора аппаратного обеспечения QEMU, связанная с выделением неограниченной памяти, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 5.5 | 0% Низкий | больше 5 лет назад | |
ALT-PU-2024-1248 ALT-PU-2024-1248: package `qemu` update to version 8.2.0-alt1 | CVSS3: 8.8 | больше 2 лет назад | ||
CVE-2021-3527 A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service. | CVSS3: 5.5 | 0% Низкий | больше 5 лет назад | |
CVE-2021-3527 A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service. | CVSS3: 3.2 | 0% Низкий | больше 5 лет назад | |
CVE-2021-3527 A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service. | CVSS3: 5.5 | 0% Низкий | больше 5 лет назад | |
CVE-2021-3527 A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single large transfer request to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack resulting in a denial of service. | CVSS3: 5.5 | 0% Низкий | больше 5 лет назад | |
CVE-2021-3527 A flaw was found in the USB redirector device (usb-redir) of QEMU. Sma ... | CVSS3: 5.5 | 0% Низкий | больше 5 лет назад | |
ALT-PU-2021-2713 ALT-PU-2021-2713: package `qemu` update to version 6.1.0-alt1 | CVSS3: 8.5 | около 5 лет назад | ||
ALT-PU-2021-3363 ALT-PU-2021-3363: package `qemu` update to version 6.1.0-alt2 | CVSS3: 8.5 | почти 5 лет назад | ||
ALT-PU-2024-6235 ALT-PU-2024-6235: package `qemu` update to version 8.2.2-alt0.p10 | CVSS3: 8.8 | больше 2 лет назад | ||
GHSA-fwv2-775h-qv4v A flaw was found in the USB redirector device (usb-redir) of QEMU. Small USB packets are combined into a single, large transfer request, to reduce the overhead and improve performance. The combined size of the bulk transfer is used to dynamically allocate a variable length array (VLA) on the stack without proper validation. Since the total size is not bounded, a malicious guest could use this flaw to influence the array length and cause the QEMU process to perform an excessive allocation on the stack, resulting in a denial of service. | CVSS3: 5.5 | 0% Низкий | больше 4 лет назад | |
openSUSE-SU-2021:2858-1 Security update for qemu | около 5 лет назад | |||
openSUSE-SU-2021:2789-1 Security update for qemu | около 5 лет назад | |||
SUSE-SU-2021:3575-1 Security update for qemu | почти 5 лет назад | |||
SUSE-SU-2021:2858-1 Security update for qemu | около 5 лет назад | |||
SUSE-SU-2021:2813-1 Security update for qemu | около 5 лет назад | |||
SUSE-SU-2021:2789-1 Security update for qemu | около 5 лет назад | |||
ELSA-2021-9425 ELSA-2021-9425: qemu security update (IMPORTANT) | около 5 лет назад | |||
SUSE-SU-2021:3635-1 Security update for qemu | почти 5 лет назад | |||
SUSE-SU-2021:3614-1 Security update for qemu | почти 5 лет назад |
Уязвимостей на страницу