Количество 23
Количество 23

CVE-2019-12068
In QEMU 1:4.1-1, 1:2.1+dfsg-12+deb8u6, 1:2.8+dfsg-6+deb9u8, 1:3.1+dfsg-8~deb10u1, 1:3.1+dfsg-8+deb10u2, and 1:2.1+dfsg-12+deb8u12 (fixed), when executing script in lsi_execute_script(), the LSI scsi adapter emulator advances 's->dsp' index to read next opcode. This can lead to an infinite loop if the next opcode is empty. Move the existing loop exit after 10k iterations so that it covers no-op opcodes as well.

CVE-2019-12068
In QEMU 1:4.1-1, 1:2.1+dfsg-12+deb8u6, 1:2.8+dfsg-6+deb9u8, 1:3.1+dfsg-8~deb10u1, 1:3.1+dfsg-8+deb10u2, and 1:2.1+dfsg-12+deb8u12 (fixed), when executing script in lsi_execute_script(), the LSI scsi adapter emulator advances 's->dsp' index to read next opcode. This can lead to an infinite loop if the next opcode is empty. Move the existing loop exit after 10k iterations so that it covers no-op opcodes as well.

CVE-2019-12068
In QEMU 1:4.1-1, 1:2.1+dfsg-12+deb8u6, 1:2.8+dfsg-6+deb9u8, 1:3.1+dfsg-8~deb10u1, 1:3.1+dfsg-8+deb10u2, and 1:2.1+dfsg-12+deb8u12 (fixed), when executing script in lsi_execute_script(), the LSI scsi adapter emulator advances 's->dsp' index to read next opcode. This can lead to an infinite loop if the next opcode is empty. Move the existing loop exit after 10k iterations so that it covers no-op opcodes as well.
CVE-2019-12068
In QEMU 1:4.1-1, 1:2.1+dfsg-12+deb8u6, 1:2.8+dfsg-6+deb9u8, 1:3.1+dfsg ...
GHSA-4699-632x-4vxr
In QEMU 1:4.1-1, 1:2.1+dfsg-12+deb8u6, 1:2.8+dfsg-6+deb9u8, 1:3.1+dfsg-8~deb10u1, 1:3.1+dfsg-8+deb10u2, and 1:2.1+dfsg-12+deb8u12 (fixed), when executing script in lsi_execute_script(), the LSI scsi adapter emulator advances 's->dsp' index to read next opcode. This can lead to an infinite loop if the next opcode is empty. Move the existing loop exit after 10k iterations so that it covers no-op opcodes as well.

BDU:2021-03544
Уязвимость программного обеспечения для эмуляции аппаратного обеспечения различных платформ QEMU, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании
ELSA-2020-5576
ELSA-2020-5576: qemu security update (IMPORTANT)

openSUSE-SU-2019:2505-1
Security update for qemu

SUSE-SU-2019:2956-1
Security update for qemu

SUSE-SU-2019:2954-1
Security update for qemu

openSUSE-SU-2019:2510-1
Security update for qemu

SUSE-SU-2020:14396-1
Security update for kvm

SUSE-SU-2019:2955-1
Security update for qemu

SUSE-SU-2020:1538-1
Security update for qemu

SUSE-SU-2020:1526-1
Security update for qemu

SUSE-SU-2020:1514-1
Security update for qemu

SUSE-SU-2019:2783-1
Security update for xen

SUSE-SU-2019:14201-1
Security update for xen

SUSE-SU-2019:14199-1
Security update for xen

SUSE-SU-2019:2769-1
Security update for xen
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2019-12068 In QEMU 1:4.1-1, 1:2.1+dfsg-12+deb8u6, 1:2.8+dfsg-6+deb9u8, 1:3.1+dfsg-8~deb10u1, 1:3.1+dfsg-8+deb10u2, and 1:2.1+dfsg-12+deb8u12 (fixed), when executing script in lsi_execute_script(), the LSI scsi adapter emulator advances 's->dsp' index to read next opcode. This can lead to an infinite loop if the next opcode is empty. Move the existing loop exit after 10k iterations so that it covers no-op opcodes as well. | CVSS3: 3.8 | 0% Низкий | больше 5 лет назад |
![]() | CVE-2019-12068 In QEMU 1:4.1-1, 1:2.1+dfsg-12+deb8u6, 1:2.8+dfsg-6+deb9u8, 1:3.1+dfsg-8~deb10u1, 1:3.1+dfsg-8+deb10u2, and 1:2.1+dfsg-12+deb8u12 (fixed), when executing script in lsi_execute_script(), the LSI scsi adapter emulator advances 's->dsp' index to read next opcode. This can lead to an infinite loop if the next opcode is empty. Move the existing loop exit after 10k iterations so that it covers no-op opcodes as well. | CVSS3: 4.3 | 0% Низкий | почти 6 лет назад |
![]() | CVE-2019-12068 In QEMU 1:4.1-1, 1:2.1+dfsg-12+deb8u6, 1:2.8+dfsg-6+deb9u8, 1:3.1+dfsg-8~deb10u1, 1:3.1+dfsg-8+deb10u2, and 1:2.1+dfsg-12+deb8u12 (fixed), when executing script in lsi_execute_script(), the LSI scsi adapter emulator advances 's->dsp' index to read next opcode. This can lead to an infinite loop if the next opcode is empty. Move the existing loop exit after 10k iterations so that it covers no-op opcodes as well. | CVSS3: 3.8 | 0% Низкий | больше 5 лет назад |
CVE-2019-12068 In QEMU 1:4.1-1, 1:2.1+dfsg-12+deb8u6, 1:2.8+dfsg-6+deb9u8, 1:3.1+dfsg ... | CVSS3: 3.8 | 0% Низкий | больше 5 лет назад | |
GHSA-4699-632x-4vxr In QEMU 1:4.1-1, 1:2.1+dfsg-12+deb8u6, 1:2.8+dfsg-6+deb9u8, 1:3.1+dfsg-8~deb10u1, 1:3.1+dfsg-8+deb10u2, and 1:2.1+dfsg-12+deb8u12 (fixed), when executing script in lsi_execute_script(), the LSI scsi adapter emulator advances 's->dsp' index to read next opcode. This can lead to an infinite loop if the next opcode is empty. Move the existing loop exit after 10k iterations so that it covers no-op opcodes as well. | CVSS3: 3.8 | 0% Низкий | около 3 лет назад | |
![]() | BDU:2021-03544 Уязвимость программного обеспечения для эмуляции аппаратного обеспечения различных платформ QEMU, связанная с выполнением цикла с недоступным условием выхода, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 3.8 | 0% Низкий | больше 5 лет назад |
ELSA-2020-5576 ELSA-2020-5576: qemu security update (IMPORTANT) | больше 5 лет назад | |||
![]() | openSUSE-SU-2019:2505-1 Security update for qemu | больше 5 лет назад | ||
![]() | SUSE-SU-2019:2956-1 Security update for qemu | больше 5 лет назад | ||
![]() | SUSE-SU-2019:2954-1 Security update for qemu | больше 5 лет назад | ||
![]() | openSUSE-SU-2019:2510-1 Security update for qemu | больше 5 лет назад | ||
![]() | SUSE-SU-2020:14396-1 Security update for kvm | около 5 лет назад | ||
![]() | SUSE-SU-2019:2955-1 Security update for qemu | больше 5 лет назад | ||
![]() | SUSE-SU-2020:1538-1 Security update for qemu | около 5 лет назад | ||
![]() | SUSE-SU-2020:1526-1 Security update for qemu | около 5 лет назад | ||
![]() | SUSE-SU-2020:1514-1 Security update for qemu | около 5 лет назад | ||
![]() | SUSE-SU-2019:2783-1 Security update for xen | больше 5 лет назад | ||
![]() | SUSE-SU-2019:14201-1 Security update for xen | больше 5 лет назад | ||
![]() | SUSE-SU-2019:14199-1 Security update for xen | больше 5 лет назад | ||
![]() | SUSE-SU-2019:2769-1 Security update for xen | больше 5 лет назад |
Уязвимостей на страницу