Vulnerabilities > Qemu > Qemu > 6.2.0

DATE CVE VULNERABILITY TITLE RISK
2023-07-11 CVE-2023-3354 NULL Pointer Dereference vulnerability in multiple products
A flaw was found in the QEMU built-in VNC server.
network
low complexity
qemu redhat fedoraproject CWE-476
7.5
2023-03-29 CVE-2023-0664 Improper Privilege Management vulnerability in multiple products
A flaw was found in the QEMU Guest Agent service for Windows.
local
low complexity
qemu redhat fedoraproject CWE-269
7.8
2023-03-23 CVE-2023-1544 Allocation of Resources Without Limits or Throttling vulnerability in multiple products
A flaw was found in the QEMU implementation of VMWare's paravirtual RDMA device.
local
low complexity
qemu fedoraproject CWE-770
6.3
2022-11-29 CVE-2022-4144 Out-of-bounds Read vulnerability in multiple products
An out-of-bounds read flaw was found in the QXL display device emulation in QEMU.
local
low complexity
qemu fedoraproject redhat CWE-125
6.5
2022-11-07 CVE-2022-3872 Off-by-one Error vulnerability in Qemu
An off-by-one read/write issue was found in the SDHCI device of QEMU.
network
low complexity
qemu CWE-193
8.6
2022-10-17 CVE-2022-3165 Integer Underflow (Wrap or Wraparound) vulnerability in multiple products
An integer underflow issue was found in the QEMU VNC server while processing ClientCutText messages in the extended format.
network
low complexity
qemu fedoraproject CWE-191
6.5
2022-09-13 CVE-2022-2962 Improper Synchronization vulnerability in Qemu
A DMA reentrancy issue was found in the Tulip device emulation in QEMU.
local
low complexity
qemu CWE-662
7.8
2022-08-29 CVE-2022-0358 Improper Check for Dropped Privileges vulnerability in multiple products
A flaw was found in the QEMU virtio-fs shared file system daemon (virtiofsd) implementation.
local
low complexity
qemu redhat CWE-273
7.8
2022-08-26 CVE-2022-0216 Use After Free vulnerability in multiple products
A use-after-free vulnerability was found in the LSI53C895A SCSI Host Bus Adapter emulation of QEMU.
local
low complexity
qemu fedoraproject CWE-416
4.4
2022-08-25 CVE-2021-3929 Use After Free vulnerability in multiple products
A DMA reentrancy issue was found in the NVM Express Controller (NVME) emulation in QEMU.
local
low complexity
qemu fedoraproject CWE-416
8.2