PT-2014-5452 · Qemu+3 · Qemu+3

Gerd Hoffmann

·

Published

2014-10-17

·

Updated

2023-02-13

·

CVE-2014-3689

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions QEMU (affected versions not specified)
Description The issue allows local guest users to gain privileges by writing to QEMU memory locations. This is related to rectangle handling in the vmware-vga driver.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Privilege Management

Weakness Enumeration

Related Identifiers

ALT-PU-2014-2465
CVE-2014-3689
DSA-3066-1
DSA-3067-1
MGASA-2014-0467
OPENSUSE-SU-2016_0914-1
OPENSUSE-SU-2016_0995-1
SUSE-SU-2016:0873-1
SUSE-SU-2016:0955-1
SUSE-SU-2016:1154-1
SUSE-SU-2016:1318-1
SUSE-SU-2016:1560-1
SUSE-SU-2016:1698-1
SUSE-SU-2016:1745-1
SUSE-SU-2016:1785-1
SUSE-SU-2021:14704-1
SUSE-SU-2021:14706-1
SUSE-SU-2021_14704-1
USN-2409-1

Affected Products

Alt Linux
Qemu
Suse
Ubuntu