PT-2014-2823 · Qemu+3 · Qemu+3

Anthony Liguori

+3

·

Publicado

2014-02-20

·

Atualizado

2024-06-15

·

CVE-2013-4538

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions QEMU versions prior to 1.7.2
Description The issue is related to multiple buffer overflows in the ssd0323 load function, which can be triggered by crafted values in a savevm image, including cmd len, row, col, row start, row end, col start, and col end. This can cause a denial of service due to memory corruption or possibly allow the execution of arbitrary code.
Recommendations For QEMU versions prior to 1.7.2, update to version 1.7.2 or later to resolve the issue.

Correção

DoS

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2014-1526
CVE-2013-4538
MGASA-2014-0426
OPENSUSE-SU-2016_0914-1
OPENSUSE-SU-2016_0995-1
OPENSUSE-SU-2024:10196-1
OPENSUSE-SU-2024:10233-1
SUSE-SU-2016:0873-1
SUSE-SU-2016:0955-1
SUSE-SU-2016:1154-1
SUSE-SU-2016:1318-1
SUSE-SU-2016:1745-1
USN-2342-1

Produtos afetados

Alt Linux
Qemu
Suse
Ubuntu