Количество 38
Количество 38
CVE-2023-3301
A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared before the virtio-net pci frontend has been unplugged. A malicious guest could use this time window to trigger an assertion and cause a denial of service.
CVE-2023-3301
CVE-2023-3301
A flaw was found in QEMU. The async nature of hot-unplug enables a rac ...
SUSE-SU-2023:3015-1
Security update for qemu
CVE-2023-3180
A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ.
CVE-2023-3180
A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ.
CVE-2023-3180
A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ.
CVE-2023-3180
CVE-2023-3180
A flaw was found in the QEMU virtual crypto device while handling data ...
GHSA-cp42-9j6q-v649
A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared before the virtio-net pci frontend has been unplugged. A malicious guest could use this time window to trigger an assertion and cause a denial of service.
BDU:2024-04418
Уязвимость интерфейса virtio-net эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании
GHSA-p36c-2mv6-8m8q
A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ.
BDU:2023-08901
Уязвимость функции virtio_crypto_handle_sym_req эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании
ELSA-2023-6980
ELSA-2023-6980: virt:ol and virt-devel:rhel security, bug fix, and enhancement update (MODERATE)
SUSE-SU-2023:3234-1
Security update for qemu
SUSE-SU-2024:0589-1
Security update for qemu
SUSE-SU-2023:4662-1
Security update for qemu
ROS-20240606-01
Множественные уязвимости qemu
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-3301 A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared before the virtio-net pci frontend has been unplugged. A malicious guest could use this time window to trigger an assertion and cause a denial of service. | CVSS3: 5.6 | 0% Низкий | около 2 лет назад | |
CVSS3: 5.6 | 0% Низкий | около 1 года назад | ||
CVE-2023-3301 A flaw was found in QEMU. The async nature of hot-unplug enables a rac ... | CVSS3: 5.6 | 0% Низкий | около 2 лет назад | |
SUSE-SU-2023:3015-1 Security update for qemu | больше 2 лет назад | |||
CVE-2023-3180 A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ. | CVSS3: 6 | 0% Низкий | больше 2 лет назад | |
CVE-2023-3180 A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ. | CVSS3: 6 | 0% Низкий | больше 2 лет назад | |
CVE-2023-3180 A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ. | CVSS3: 6 | 0% Низкий | больше 2 лет назад | |
CVSS3: 6.5 | 0% Низкий | 7 месяцев назад | ||
CVE-2023-3180 A flaw was found in the QEMU virtual crypto device while handling data ... | CVSS3: 6 | 0% Низкий | больше 2 лет назад | |
GHSA-cp42-9j6q-v649 A flaw was found in QEMU. The async nature of hot-unplug enables a race scenario where the net device backend is cleared before the virtio-net pci frontend has been unplugged. A malicious guest could use this time window to trigger an assertion and cause a denial of service. | CVSS3: 5.6 | 0% Низкий | около 2 лет назад | |
BDU:2024-04418 Уязвимость интерфейса virtio-net эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 5.6 | 0% Низкий | около 2 лет назад | |
GHSA-p36c-2mv6-8m8q A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ. | CVSS3: 6 | 0% Низкий | больше 2 лет назад | |
BDU:2023-08901 Уязвимость функции virtio_crypto_handle_sym_req эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 6.5 | 0% Низкий | больше 2 лет назад | |
ELSA-2023-6980 ELSA-2023-6980: virt:ol and virt-devel:rhel security, bug fix, and enhancement update (MODERATE) | почти 2 года назад | |||
SUSE-SU-2023:3234-1 Security update for qemu | больше 2 лет назад | |||
SUSE-SU-2024:0589-1 Security update for qemu | больше 1 года назад | |||
SUSE-SU-2023:4662-1 Security update for qemu | почти 2 года назад | |||
ROS-20240606-01 Множественные уязвимости qemu | CVSS3: 7.5 | больше 1 года назад |
Уязвимостей на страницу