PT-2018-14299 · Qemu+5 · Qemu+5

Published

2014-09-12

·

Updated

2020-08-24

·

CVE-2018-17962

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Qemu (affected versions not specified)
Description The issue is related to a buffer overflow in the pcnet receive function located in hw/net/pcnet.c. This occurs due to the use of an incorrect integer data type.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Integer Overflow

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2014-2134
ALT-PU-2017-1521
ALT-PU-2018-2161
CESA-2019_2892
CVE-2018-17962
DLA-1599-1
DSA-4338-1
OPENSUSE-SU-2018_4004-1
OPENSUSE-SU-2018_4147-1
RHSA-2019:2892
RHSA-2019_2892
SUSE-SU-2018:3912-1
SUSE-SU-2018:3927-1
SUSE-SU-2018:3973-1
SUSE-SU-2018:3973-2
SUSE-SU-2018:3975-1
SUSE-SU-2018:3987-1
SUSE-SU-2018:4129-1
SUSE-SU-2018:4185-1
SUSE-SU-2018:4237-1
SUSE-SU-2019:0825-1
SUSE-SU-2019:0827-1
SUSE-SU-2019:13921-1
SUSE-SU-2019:14011-1
USN-3826-1

Affected Products

Alt Linux
Centos
Qemu
Red Hat
Suse
Ubuntu