Количество 38
Количество 38

CVE-2023-3180
A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ.

CVE-2023-3180
A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ.

CVE-2023-3180
A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ.

CVE-2023-3180
CVE-2023-3180
A flaw was found in the QEMU virtual crypto device while handling data ...

CVE-2023-0330
A vulnerability in the lsi53c895a device affects the latest version of qemu. A DMA-MMIO reentrancy problem may lead to memory corruption bugs like stack overflow or use-after-free.

CVE-2023-0330
A vulnerability in the lsi53c895a device affects the latest version of qemu. A DMA-MMIO reentrancy problem may lead to memory corruption bugs like stack overflow or use-after-free.

CVE-2023-0330
A vulnerability in the lsi53c895a device affects the latest version of qemu. A DMA-MMIO reentrancy problem may lead to memory corruption bugs like stack overflow or use-after-free.

CVE-2023-0330
CVE-2023-0330
A vulnerability in the lsi53c895a device affects the latest version of ...

ROS-20240606-01
Множественные уязвимости qemu
GHSA-p36c-2mv6-8m8q
A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ.
GHSA-fj3c-gq42-693w
A vulnerability in the lsi53c895a device affects the latest version of qemu. A DMA-MMIO reentrancy problem may lead to memory corruption bugs like stack overflow or use-after-free.

BDU:2023-08901
Уязвимость функции virtio_crypto_handle_sym_req эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании

BDU:2023-04834
Уязвимость компонента lsi53c895a.c эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании

SUSE-SU-2024:0589-1
Security update for qemu

SUSE-SU-2023:4662-1
Security update for qemu

SUSE-SU-2023:3015-1
Security update for qemu
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2023-3180 A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ. | CVSS3: 6 | 0% Низкий | почти 2 года назад |
![]() | CVE-2023-3180 A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ. | CVSS3: 6 | 0% Низкий | почти 2 года назад |
![]() | CVE-2023-3180 A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ. | CVSS3: 6 | 0% Низкий | почти 2 года назад |
![]() | CVSS3: 6.5 | 0% Низкий | 2 месяца назад | |
CVE-2023-3180 A flaw was found in the QEMU virtual crypto device while handling data ... | CVSS3: 6 | 0% Низкий | почти 2 года назад | |
![]() | CVE-2023-0330 A vulnerability in the lsi53c895a device affects the latest version of qemu. A DMA-MMIO reentrancy problem may lead to memory corruption bugs like stack overflow or use-after-free. | CVSS3: 5.3 | 0% Низкий | больше 2 лет назад |
![]() | CVE-2023-0330 A vulnerability in the lsi53c895a device affects the latest version of qemu. A DMA-MMIO reentrancy problem may lead to memory corruption bugs like stack overflow or use-after-free. | CVSS3: 5.3 | 0% Низкий | больше 2 лет назад |
![]() | CVE-2023-0330 A vulnerability in the lsi53c895a device affects the latest version of qemu. A DMA-MMIO reentrancy problem may lead to memory corruption bugs like stack overflow or use-after-free. | CVSS3: 5.3 | 0% Низкий | больше 2 лет назад |
![]() | CVSS3: 6 | 0% Низкий | 2 месяца назад | |
CVE-2023-0330 A vulnerability in the lsi53c895a device affects the latest version of ... | CVSS3: 5.3 | 0% Низкий | больше 2 лет назад | |
![]() | ROS-20240606-01 Множественные уязвимости qemu | CVSS3: 7.5 | около 1 года назад | |
GHSA-p36c-2mv6-8m8q A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. There is no check for the value of `src_len` and `dst_len` in virtio_crypto_sym_op_helper, potentially leading to a heap buffer overflow when the two values differ. | CVSS3: 6 | 0% Низкий | почти 2 года назад | |
GHSA-fj3c-gq42-693w A vulnerability in the lsi53c895a device affects the latest version of qemu. A DMA-MMIO reentrancy problem may lead to memory corruption bugs like stack overflow or use-after-free. | CVSS3: 9.8 | 0% Низкий | больше 2 лет назад | |
![]() | BDU:2023-08901 Уязвимость функции virtio_crypto_handle_sym_req эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 6.5 | 0% Низкий | почти 2 года назад |
![]() | BDU:2023-04834 Уязвимость компонента lsi53c895a.c эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 6 | 0% Низкий | больше 2 лет назад |
![]() | SUSE-SU-2024:0589-1 Security update for qemu | больше 1 года назад | ||
![]() | SUSE-SU-2023:4662-1 Security update for qemu | больше 1 года назад | ||
![]() | SUSE-SU-2023:3015-1 Security update for qemu | почти 2 года назад |
Уязвимостей на страницу