PT-2008-5771 · Fabrice Bellard+1 · Qemu+1
Jan Lieskovsky
·
Publicado
2008-12-29
·
Atualizado
2024-06-15
·
CVE-2008-4539
CVSS v2.0
7.2
Alta
| Vetor | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
KVM versions prior to kvm-82
QEMU (affected versions not specified)
Description
A heap-based buffer overflow exists in the Cirrus VGA implementation, potentially allowing local users to gain privileges. This issue is related to an incorrect fix for a previous problem and might be exploited through the VNC console.
Recommendations
For KVM versions prior to kvm-82, update to version kvm-82 or later to resolve the issue.
For QEMU, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Kvm
Qemu