Количество 13
Количество 13

BDU:2021-06308
Уязвимость команды VIRTIO_GPU_CMD_GET_CAPSET эмулятора аппаратного обеспечения QEMU, связанная с записью за границами буфера, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVE-2021-3546
An out-of-bounds write vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including 6.0. The flaw occurs while processing the 'VIRTIO_GPU_CMD_GET_CAPSET' command from the guest. It could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service condition, or potential code execution with the privileges of the QEMU process.

CVE-2021-3546
An out-of-bounds write vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including 6.0. The flaw occurs while processing the 'VIRTIO_GPU_CMD_GET_CAPSET' command from the guest. It could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service condition, or potential code execution with the privileges of the QEMU process.

CVE-2021-3546
An out-of-bounds write vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including 6.0. The flaw occurs while processing the 'VIRTIO_GPU_CMD_GET_CAPSET' command from the guest. It could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service condition, or potential code execution with the privileges of the QEMU process.

CVE-2021-3546
CVE-2021-3546
An out-of-bounds write vulnerability was found in the virtio vhost-use ...
GHSA-m53p-4wch-f983
A flaw was found in vhost-user-gpu of QEMU in versions up to and including 6.0. An out-of-bounds write vulnerability can allow a malicious guest to crash the QEMU process on the host resulting in a denial of service or potentially execute arbitrary code on the host with the privileges of the QEMU process. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

openSUSE-SU-2021:2213-1
Security update for qemu

SUSE-SU-2021:2213-1
Security update for qemu

SUSE-SU-2021:2212-1
Security update for qemu
ELSA-2021-9425
ELSA-2021-9425: qemu security update (IMPORTANT)

openSUSE-SU-2021:1043-1
Security update for qemu
ELSA-2021-9568
ELSA-2021-9568: virt:kvm_utils security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | BDU:2021-06308 Уязвимость команды VIRTIO_GPU_CMD_GET_CAPSET эмулятора аппаратного обеспечения QEMU, связанная с записью за границами буфера, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании | CVSS3: 8.2 | 0% Низкий | около 4 лет назад |
![]() | CVE-2021-3546 An out-of-bounds write vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including 6.0. The flaw occurs while processing the 'VIRTIO_GPU_CMD_GET_CAPSET' command from the guest. It could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service condition, or potential code execution with the privileges of the QEMU process. | CVSS3: 8.2 | 0% Низкий | около 4 лет назад |
![]() | CVE-2021-3546 An out-of-bounds write vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including 6.0. The flaw occurs while processing the 'VIRTIO_GPU_CMD_GET_CAPSET' command from the guest. It could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service condition, or potential code execution with the privileges of the QEMU process. | CVSS3: 8.2 | 0% Низкий | около 4 лет назад |
![]() | CVE-2021-3546 An out-of-bounds write vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including 6.0. The flaw occurs while processing the 'VIRTIO_GPU_CMD_GET_CAPSET' command from the guest. It could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service condition, or potential code execution with the privileges of the QEMU process. | CVSS3: 8.2 | 0% Низкий | около 4 лет назад |
![]() | CVSS3: 8.2 | 0% Низкий | около 4 лет назад | |
CVE-2021-3546 An out-of-bounds write vulnerability was found in the virtio vhost-use ... | CVSS3: 8.2 | 0% Низкий | около 4 лет назад | |
GHSA-m53p-4wch-f983 A flaw was found in vhost-user-gpu of QEMU in versions up to and including 6.0. An out-of-bounds write vulnerability can allow a malicious guest to crash the QEMU process on the host resulting in a denial of service or potentially execute arbitrary code on the host with the privileges of the QEMU process. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. | CVSS3: 8.2 | 0% Низкий | около 3 лет назад | |
![]() | openSUSE-SU-2021:2213-1 Security update for qemu | около 4 лет назад | ||
![]() | SUSE-SU-2021:2213-1 Security update for qemu | около 4 лет назад | ||
![]() | SUSE-SU-2021:2212-1 Security update for qemu | около 4 лет назад | ||
ELSA-2021-9425 ELSA-2021-9425: qemu security update (IMPORTANT) | почти 4 года назад | |||
![]() | openSUSE-SU-2021:1043-1 Security update for qemu | около 4 лет назад | ||
ELSA-2021-9568 ELSA-2021-9568: virt:kvm_utils security update (IMPORTANT) | больше 3 лет назад |
Уязвимостей на страницу