Логотип exploitDog
bind:"CVE-2016-4020" OR bind:"CVE-2017-2633" OR bind:"CVE-2017-5898"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2016-4020" OR bind:"CVE-2017-2633" OR bind:"CVE-2017-5898"

Количество 48

Количество 48

oracle-oval логотип

ELSA-2017-1856

почти 8 лет назад

ELSA-2017-1856: qemu-kvm security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2016-4020

около 9 лет назад

The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2016-4020

около 9 лет назад

The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).

CVSS3: 3.4
EPSS: Низкий
nvd логотип

CVE-2016-4020

около 9 лет назад

The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2016-4020

около 9 лет назад

The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-vcqr-cc8h-57gj

около 3 лет назад

The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2017-2633

почти 7 лет назад

An out-of-bounds memory access issue was found in Quick Emulator (QEMU) before 1.7.2 in the VNC display driver. This flaw could occur while refreshing the VNC display surface area in the 'vnc_refresh_server_surface'. A user inside a guest could use this flaw to crash the QEMU process.

CVSS3: 5.4
EPSS: Низкий
redhat логотип

CVE-2017-2633

больше 8 лет назад

An out-of-bounds memory access issue was found in Quick Emulator (QEMU) before 1.7.2 in the VNC display driver. This flaw could occur while refreshing the VNC display surface area in the 'vnc_refresh_server_surface'. A user inside a guest could use this flaw to crash the QEMU process.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2017-2633

почти 7 лет назад

An out-of-bounds memory access issue was found in Quick Emulator (QEMU) before 1.7.2 in the VNC display driver. This flaw could occur while refreshing the VNC display surface area in the 'vnc_refresh_server_surface'. A user inside a guest could use this flaw to crash the QEMU process.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2017-2633

почти 7 лет назад

An out-of-bounds memory access issue was found in Quick Emulator (QEMU ...

CVSS3: 5.4
EPSS: Низкий
ubuntu логотип

CVE-2017-5898

больше 8 лет назад

Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card device emulator support, allows local users to cause a denial of service (application crash) via a large Application Protocol Data Units (APDU) unit.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2017-5898

больше 8 лет назад

Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card device emulator support, allows local users to cause a denial of service (application crash) via a large Application Protocol Data Units (APDU) unit.

CVSS3: 4
EPSS: Низкий
nvd логотип

CVE-2017-5898

больше 8 лет назад

Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card device emulator support, allows local users to cause a denial of service (application crash) via a large Application Protocol Data Units (APDU) unit.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2017-5898

больше 8 лет назад

Integer overflow in the emulated_apdu_from_guest function in usb/dev-s ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-c46f-47cq-c2fg

около 3 лет назад

An out-of-bounds memory access issue was found in Quick Emulator (QEMU) before 1.7.2 in the VNC display driver. This flaw could occur while refreshing the VNC display surface area in the 'vnc_refresh_server_surface'. A user inside a guest could use this flaw to crash the QEMU process.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-vfvm-h748-r758

около 3 лет назад

Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card device emulator support, allows local users to cause a denial of service (application crash) via a large Application Protocol Data Units (APDU) unit.

CVSS3: 5.5
EPSS: Низкий
fstec логотип

BDU:2017-00651

больше 8 лет назад

Уязвимость эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 2.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:0039-1

больше 7 лет назад

Security update for kvm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:0019-1

больше 7 лет назад

Security update for kvm

EPSS: Низкий
oracle-oval логотип

ELSA-2017-1206

около 8 лет назад

ELSA-2017-1206: qemu-kvm security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2017-1856

ELSA-2017-1856: qemu-kvm security, bug fix, and enhancement update (MODERATE)

почти 8 лет назад
ubuntu логотип
CVE-2016-4020

The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).

CVSS3: 6.5
0%
Низкий
около 9 лет назад
redhat логотип
CVE-2016-4020

The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).

CVSS3: 3.4
0%
Низкий
около 9 лет назад
nvd логотип
CVE-2016-4020

The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).

CVSS3: 6.5
0%
Низкий
около 9 лет назад
debian логотип
CVE-2016-4020

The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not ...

CVSS3: 6.5
0%
Низкий
около 9 лет назад
github логотип
GHSA-vcqr-cc8h-57gj

The patch_instruction function in hw/i386/kvmvapic.c in QEMU does not initialize the imm32 variable, which allows local guest OS administrators to obtain sensitive information from host stack memory by accessing the Task Priority Register (TPR).

CVSS3: 6.5
0%
Низкий
около 3 лет назад
ubuntu логотип
CVE-2017-2633

An out-of-bounds memory access issue was found in Quick Emulator (QEMU) before 1.7.2 in the VNC display driver. This flaw could occur while refreshing the VNC display surface area in the 'vnc_refresh_server_surface'. A user inside a guest could use this flaw to crash the QEMU process.

CVSS3: 5.4
1%
Низкий
почти 7 лет назад
redhat логотип
CVE-2017-2633

An out-of-bounds memory access issue was found in Quick Emulator (QEMU) before 1.7.2 in the VNC display driver. This flaw could occur while refreshing the VNC display surface area in the 'vnc_refresh_server_surface'. A user inside a guest could use this flaw to crash the QEMU process.

CVSS3: 5.4
1%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-2633

An out-of-bounds memory access issue was found in Quick Emulator (QEMU) before 1.7.2 in the VNC display driver. This flaw could occur while refreshing the VNC display surface area in the 'vnc_refresh_server_surface'. A user inside a guest could use this flaw to crash the QEMU process.

CVSS3: 5.4
1%
Низкий
почти 7 лет назад
debian логотип
CVE-2017-2633

An out-of-bounds memory access issue was found in Quick Emulator (QEMU ...

CVSS3: 5.4
1%
Низкий
почти 7 лет назад
ubuntu логотип
CVE-2017-5898

Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card device emulator support, allows local users to cause a denial of service (application crash) via a large Application Protocol Data Units (APDU) unit.

CVSS3: 5.5
0%
Низкий
больше 8 лет назад
redhat логотип
CVE-2017-5898

Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card device emulator support, allows local users to cause a denial of service (application crash) via a large Application Protocol Data Units (APDU) unit.

CVSS3: 4
0%
Низкий
больше 8 лет назад
nvd логотип
CVE-2017-5898

Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card device emulator support, allows local users to cause a denial of service (application crash) via a large Application Protocol Data Units (APDU) unit.

CVSS3: 5.5
0%
Низкий
больше 8 лет назад
debian логотип
CVE-2017-5898

Integer overflow in the emulated_apdu_from_guest function in usb/dev-s ...

CVSS3: 5.5
0%
Низкий
больше 8 лет назад
github логотип
GHSA-c46f-47cq-c2fg

An out-of-bounds memory access issue was found in Quick Emulator (QEMU) before 1.7.2 in the VNC display driver. This flaw could occur while refreshing the VNC display surface area in the 'vnc_refresh_server_surface'. A user inside a guest could use this flaw to crash the QEMU process.

CVSS3: 6.5
1%
Низкий
около 3 лет назад
github логотип
GHSA-vfvm-h748-r758

Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card device emulator support, allows local users to cause a denial of service (application crash) via a large Application Protocol Data Units (APDU) unit.

CVSS3: 5.5
0%
Низкий
около 3 лет назад
fstec логотип
BDU:2017-00651

Уязвимость эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании

CVSS2: 2.1
0%
Низкий
больше 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:0039-1

Security update for kvm

больше 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:0019-1

Security update for kvm

больше 7 лет назад
oracle-oval логотип
ELSA-2017-1206

ELSA-2017-1206: qemu-kvm security update (IMPORTANT)

около 8 лет назад

Уязвимостей на страницу