Количество 37
Количество 37
ELSA-2024-9136
ELSA-2024-9136: qemu-kvm security update (MODERATE)
ELSA-2024-12674
ELSA-2024-12674: qemu-kvm security update (IMPORTANT)
ELSA-2024-12604
ELSA-2024-12604: virt:kvm_utils3 security update (IMPORTANT)

CVE-2024-26327
An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c mishandles the situation where a guest writes NumVFs greater than TotalVFs, leading to a buffer overflow in VF implementations.

CVE-2024-26327
An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c mishandles the situation where a guest writes NumVFs greater than TotalVFs, leading to a buffer overflow in VF implementations.

CVE-2024-26327
An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c mishandles the situation where a guest writes NumVFs greater than TotalVFs, leading to a buffer overflow in VF implementations.

CVE-2024-26327
CVE-2024-26327
An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in h ...
ELSA-2024-6964
ELSA-2024-6964: virt:ol and virt-devel:rhel security update (MODERATE)
GHSA-7m48-vw34-vw84
An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c mishandles the situation where a guest writes NumVFs greater than TotalVFs, leading to a buffer overflow in VF implementations.

BDU:2024-01712
Уязвимость функция register_vfs() (hw/pci/pcie_sriov.c) эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании
ELSA-2024-12605
ELSA-2024-12605: virt:kvm_utils2 security update (IMPORTANT)

CVE-2024-3446
A double free vulnerability was found in QEMU virtio devices (virtio-gpu, virtio-serial-bus, virtio-crypto), where the mem_reentrancy_guard flag insufficiently protects against DMA reentrancy issues. This issue could allow a malicious privileged guest user to crash the QEMU process on the host, resulting in a denial of service or allow arbitrary code execution within the context of the QEMU process on the host.

CVE-2024-3446
A double free vulnerability was found in QEMU virtio devices (virtio-gpu, virtio-serial-bus, virtio-crypto), where the mem_reentrancy_guard flag insufficiently protects against DMA reentrancy issues. This issue could allow a malicious privileged guest user to crash the QEMU process on the host, resulting in a denial of service or allow arbitrary code execution within the context of the QEMU process on the host.

CVE-2024-3446
A double free vulnerability was found in QEMU virtio devices (virtio-gpu, virtio-serial-bus, virtio-crypto), where the mem_reentrancy_guard flag insufficiently protects against DMA reentrancy issues. This issue could allow a malicious privileged guest user to crash the QEMU process on the host, resulting in a denial of service or allow arbitrary code execution within the context of the QEMU process on the host.
CVE-2024-3446
A double free vulnerability was found in QEMU virtio devices (virtio-g ...

CVE-2024-7409
A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS) attack via improper synchronization during socket closure when a client keeps a socket open as the server is taken offline.

CVE-2024-7409
A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS) attack via improper synchronization during socket closure when a client keeps a socket open as the server is taken offline.

CVE-2024-7409
A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS) attack via improper synchronization during socket closure when a client keeps a socket open as the server is taken offline.
CVE-2024-7409
A flaw was found in the QEMU NBD Server. This vulnerability allows a d ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
ELSA-2024-9136 ELSA-2024-9136: qemu-kvm security update (MODERATE) | 7 месяцев назад | |||
ELSA-2024-12674 ELSA-2024-12674: qemu-kvm security update (IMPORTANT) | 9 месяцев назад | |||
ELSA-2024-12604 ELSA-2024-12604: virt:kvm_utils3 security update (IMPORTANT) | 10 месяцев назад | |||
![]() | CVE-2024-26327 An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c mishandles the situation where a guest writes NumVFs greater than TotalVFs, leading to a buffer overflow in VF implementations. | CVSS3: 5.3 | 0% Низкий | больше 1 года назад |
![]() | CVE-2024-26327 An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c mishandles the situation where a guest writes NumVFs greater than TotalVFs, leading to a buffer overflow in VF implementations. | CVSS3: 5.5 | 0% Низкий | больше 1 года назад |
![]() | CVE-2024-26327 An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c mishandles the situation where a guest writes NumVFs greater than TotalVFs, leading to a buffer overflow in VF implementations. | CVSS3: 5.3 | 0% Низкий | больше 1 года назад |
![]() | CVSS3: 5.3 | 0% Низкий | 25 дней назад | |
CVE-2024-26327 An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in h ... | CVSS3: 5.3 | 0% Низкий | больше 1 года назад | |
ELSA-2024-6964 ELSA-2024-6964: virt:ol and virt-devel:rhel security update (MODERATE) | 9 месяцев назад | |||
GHSA-7m48-vw34-vw84 An issue was discovered in QEMU 7.1.0 through 8.2.1. register_vfs in hw/pci/pcie_sriov.c mishandles the situation where a guest writes NumVFs greater than TotalVFs, leading to a buffer overflow in VF implementations. | CVSS3: 5.3 | 0% Низкий | больше 1 года назад | |
![]() | BDU:2024-01712 Уязвимость функция register_vfs() (hw/pci/pcie_sriov.c) эмулятора аппаратного обеспечения QEMU, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 5.5 | 0% Низкий | больше 1 года назад |
ELSA-2024-12605 ELSA-2024-12605: virt:kvm_utils2 security update (IMPORTANT) | 10 месяцев назад | |||
![]() | CVE-2024-3446 A double free vulnerability was found in QEMU virtio devices (virtio-gpu, virtio-serial-bus, virtio-crypto), where the mem_reentrancy_guard flag insufficiently protects against DMA reentrancy issues. This issue could allow a malicious privileged guest user to crash the QEMU process on the host, resulting in a denial of service or allow arbitrary code execution within the context of the QEMU process on the host. | CVSS3: 8.2 | 0% Низкий | около 1 года назад |
![]() | CVE-2024-3446 A double free vulnerability was found in QEMU virtio devices (virtio-gpu, virtio-serial-bus, virtio-crypto), where the mem_reentrancy_guard flag insufficiently protects against DMA reentrancy issues. This issue could allow a malicious privileged guest user to crash the QEMU process on the host, resulting in a denial of service or allow arbitrary code execution within the context of the QEMU process on the host. | CVSS3: 8.2 | 0% Низкий | около 1 года назад |
![]() | CVE-2024-3446 A double free vulnerability was found in QEMU virtio devices (virtio-gpu, virtio-serial-bus, virtio-crypto), where the mem_reentrancy_guard flag insufficiently protects against DMA reentrancy issues. This issue could allow a malicious privileged guest user to crash the QEMU process on the host, resulting in a denial of service or allow arbitrary code execution within the context of the QEMU process on the host. | CVSS3: 8.2 | 0% Низкий | около 1 года назад |
CVE-2024-3446 A double free vulnerability was found in QEMU virtio devices (virtio-g ... | CVSS3: 8.2 | 0% Низкий | около 1 года назад | |
![]() | CVE-2024-7409 A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS) attack via improper synchronization during socket closure when a client keeps a socket open as the server is taken offline. | CVSS3: 7.5 | 2% Низкий | 11 месяцев назад |
![]() | CVE-2024-7409 A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS) attack via improper synchronization during socket closure when a client keeps a socket open as the server is taken offline. | CVSS3: 7.5 | 2% Низкий | 11 месяцев назад |
![]() | CVE-2024-7409 A flaw was found in the QEMU NBD Server. This vulnerability allows a denial of service (DoS) attack via improper synchronization during socket closure when a client keeps a socket open as the server is taken offline. | CVSS3: 7.5 | 2% Низкий | 11 месяцев назад |
CVE-2024-7409 A flaw was found in the QEMU NBD Server. This vulnerability allows a d ... | CVSS3: 7.5 | 2% Низкий | 11 месяцев назад |
Уязвимостей на страницу