Количество 75
Количество 75
SUSE-SU-2023:3444-1
Security update for qemu
ELSA-2024-12407
ELSA-2024-12407: qemu-kvm security update (MODERATE)
GHSA-m99h-7jcp-j7w9
A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory.
BDU:2023-01705
Уязвимость функции fdctrl_transfer_handler() компонента hw/block/fdc.c эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю получить доступ к конфиденциальным данным, а также вызвать отказ в обслуживании
ROS-20240606-01
Множественные уязвимости qemu
ELSA-2024-12276
ELSA-2024-12276: virt:kvm_utils3 security update (MODERATE)
ALT-PU-2022-3081
ALT-PU-2022-3081: package `pve-qemu` update to version 7.1.0-alt1
SUSE-SU-2023:3800-1
Security update for qemu
SUSE-SU-2023:3721-1
Security update for qemu
SUSE-SU-2023:0879-1
Security update for qemu
SUSE-SU-2023:0878-1
Security update for qemu
CVE-2021-4158
A NULL pointer dereference issue was found in the ACPI code of QEMU. A malicious, privileged user within the guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition.
CVE-2021-4158
A NULL pointer dereference issue was found in the ACPI code of QEMU. A malicious, privileged user within the guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition.
CVE-2021-4158
A NULL pointer dereference issue was found in the ACPI code of QEMU. A malicious, privileged user within the guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition.
CVE-2021-4158
CVE-2021-4158
A NULL pointer dereference issue was found in the ACPI code of QEMU. A ...
ALT-PU-2022-3390
ALT-PU-2022-3390: package `pve-qemu` update to version 7.1.0-alt4
ELSA-2022-9669
ELSA-2022-9669: qemu security update (IMPORTANT)
CVE-2021-3611
A stack overflow vulnerability was found in the Intel HD Audio device (intel-hda) of QEMU. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability. This flaw affects QEMU versions prior to 7.0.0.
CVE-2021-3611
A stack overflow vulnerability was found in the Intel HD Audio device (intel-hda) of QEMU. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability. This flaw affects QEMU versions prior to 7.0.0.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
SUSE-SU-2023:3444-1 Security update for qemu | около 3 лет назад | |||
ELSA-2024-12407 ELSA-2024-12407: qemu-kvm security update (MODERATE) | больше 2 лет назад | |||
GHSA-m99h-7jcp-j7w9 A heap buffer overflow was found in the floppy disk emulator of QEMU up to 6.0.0 (including). It could occur in fdctrl_transfer_handler() in hw/block/fdc.c while processing DMA read data transfers from the floppy drive to the guest system. A privileged guest user could use this flaw to crash the QEMU process on the host resulting in DoS scenario, or potential information leakage from the host memory. | CVSS3: 6.1 | 0% Низкий | больше 4 лет назад | |
BDU:2023-01705 Уязвимость функции fdctrl_transfer_handler() компонента hw/block/fdc.c эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю получить доступ к конфиденциальным данным, а также вызвать отказ в обслуживании | CVSS3: 6.1 | 0% Низкий | больше 5 лет назад | |
ROS-20240606-01 Множественные уязвимости qemu | CVSS3: 7.5 | больше 2 лет назад | ||
ELSA-2024-12276 ELSA-2024-12276: virt:kvm_utils3 security update (MODERATE) | больше 2 лет назад | |||
ALT-PU-2022-3081 ALT-PU-2022-3081: package `pve-qemu` update to version 7.1.0-alt1 | CVSS3: 8.8 | почти 4 года назад | ||
SUSE-SU-2023:3800-1 Security update for qemu | около 3 лет назад | |||
SUSE-SU-2023:3721-1 Security update for qemu | около 3 лет назад | |||
SUSE-SU-2023:0879-1 Security update for qemu | больше 3 лет назад | |||
SUSE-SU-2023:0878-1 Security update for qemu | больше 3 лет назад | |||
CVE-2021-4158 A NULL pointer dereference issue was found in the ACPI code of QEMU. A malicious, privileged user within the guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition. | CVSS3: 6 | 0% Низкий | около 4 лет назад | |
CVE-2021-4158 A NULL pointer dereference issue was found in the ACPI code of QEMU. A malicious, privileged user within the guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition. | CVSS3: 6 | 0% Низкий | почти 5 лет назад | |
CVE-2021-4158 A NULL pointer dereference issue was found in the ACPI code of QEMU. A malicious, privileged user within the guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition. | CVSS3: 6 | 0% Низкий | около 4 лет назад | |
CVSS3: 6 | 0% Низкий | около 2 лет назад | ||
CVE-2021-4158 A NULL pointer dereference issue was found in the ACPI code of QEMU. A ... | CVSS3: 6 | 0% Низкий | около 4 лет назад | |
ALT-PU-2022-3390 ALT-PU-2022-3390: package `pve-qemu` update to version 7.1.0-alt4 | CVSS3: 8.8 | почти 4 года назад | ||
ELSA-2022-9669 ELSA-2022-9669: qemu security update (IMPORTANT) | около 4 лет назад | |||
CVE-2021-3611 A stack overflow vulnerability was found in the Intel HD Audio device (intel-hda) of QEMU. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability. This flaw affects QEMU versions prior to 7.0.0. | CVSS3: 6.5 | 0% Низкий | больше 4 лет назад | |
CVE-2021-3611 A stack overflow vulnerability was found in the Intel HD Audio device (intel-hda) of QEMU. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition. The highest threat from this vulnerability is to system availability. This flaw affects QEMU versions prior to 7.0.0. | CVSS3: 3.8 | 0% Низкий | почти 6 лет назад |
Уязвимостей на страницу