PT-2008-5771 · Fabrice Bellard+1 · Qemu+1

Jan Lieskovsky

·

Publicado

2008-12-29

·

Atualizado

2024-06-15

·

CVE-2008-4539

CVSS v2.0

7.2

Alta

VetorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions KVM versions prior to kvm-82 QEMU (affected versions not specified)
Description A heap-based buffer overflow exists in the Cirrus VGA implementation, potentially allowing local users to gain privileges. This issue is related to an incorrect fix for a previous problem and might be exploited through the VNC console.
Recommendations For KVM versions prior to kvm-82, update to version kvm-82 or later to resolve the issue. For QEMU, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-4539
DSA-1799-1
OPENSUSE-SU-2024:10233-1
OPENSUSE-SU-2024:10285-1

Produtos afetados

Kvm
Qemu