Vulnerabilities > Qemu

DATE CVE VULNERABILITY TITLE RISK
2024-09-19 CVE-2024-8354 Reachable Assertion vulnerability in multiple products
A flaw was found in QEMU.
local
low complexity
redhat qemu CWE-617
5.5
2024-07-05 CVE-2024-6505 Out-of-bounds Read vulnerability in multiple products
A flaw was found in the virtio-net device in QEMU.
network
low complexity
qemu redhat CWE-125
6.8
2024-04-10 CVE-2024-3567 Reachable Assertion vulnerability in multiple products
A flaw was found in QEMU.
local
low complexity
qemu redhat CWE-617
5.5
2024-01-12 CVE-2023-6683 NULL Pointer Dereference vulnerability in multiple products
A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages.
network
low complexity
qemu redhat CWE-476
6.5
2024-01-02 CVE-2023-6693 Out-of-bounds Write vulnerability in multiple products
A stack based buffer overflow was found in the virtio-net device of QEMU.
local
low complexity
qemu redhat fedoraproject CWE-787
5.3
2023-12-06 CVE-2023-2861 Unspecified vulnerability in Qemu
A flaw was found in the 9p passthrough filesystem (9pfs) implementation in QEMU.
local
low complexity
qemu
7.1
2023-11-03 CVE-2023-5088 Improper Synchronization vulnerability in multiple products
A bug in QEMU could cause a guest I/O operation otherwise addressed to an arbitrary disk offset to be targeted to offset 0 instead (potentially overwriting the VM's boot code).
local
high complexity
qemu redhat CWE-662
7.0
2023-09-13 CVE-2023-2680 Use After Free vulnerability in multiple products
This CVE exists because of an incomplete fix for CVE-2021-3750.
local
low complexity
qemu redhat CWE-416
8.2
2023-09-13 CVE-2023-3255 Infinite Loop vulnerability in multiple products
A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages.
network
low complexity
qemu redhat fedoraproject CWE-835
6.5
2023-09-13 CVE-2023-3301 Race Condition vulnerability in multiple products
A flaw was found in QEMU.
local
high complexity
qemu redhat CWE-362
5.6