Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Arash Tc

#20713de 53,638
12.2CVSS total
Vulnerabilidades · 2
Média
2
PT-2018-10134
6.5
2018-10-16
Qemu · Qemu · CVE-2018-10839
**Name of the Vulnerable Software and Affected Versions** Qemu emulator version 3.0.0 and earlier **Description** The issue is related to an integer overflow that could lead to a buffer overflow problem. This occurs when receiving packets over the network, specifically with the NE2000 NIC emulation support. A user inside the guest could exploit this flaw to crash the Qemu process, resulting in a denial of service (DoS). **Recommendations** For Qemu emulator version 3.0.0 and earlier, consider disabling the NE2000 NIC emulation support as a temporary workaround until a patch is available. Restrict access to the network to minimize the risk of exploitation.
PT-2018-3704
5.7
2018-07-24
Qemu · Qemu · CVE-2018-19665
**Name of the Vulnerable Software and Affected Versions** QEMU (affected versions not specified) **Description** The issue is related to an integer overflow value in the QEMU Bluetooth emulator hardware subsystem. It allows a remote attacker to cause a denial of service. The Bluetooth subsystem in QEMU also mishandles negative values for length variables, leading to memory corruption. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.