Vulnerabilities > Qemu > Qemu > 8.1.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-01-12 | CVE-2023-6683 | NULL Pointer Dereference vulnerability in multiple products A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. | 6.5 |
2024-01-02 | CVE-2023-6693 | Out-of-bounds Write vulnerability in multiple products A stack based buffer overflow was found in the virtio-net device of QEMU. | 5.3 |
2023-11-03 | CVE-2023-5088 | Improper Synchronization vulnerability in multiple products A bug in QEMU could cause a guest I/O operation otherwise addressed to an arbitrary disk offset to be targeted to offset 0 instead (potentially overwriting the VM's boot code). | 7.0 |
2023-08-04 | CVE-2023-4135 | Out-of-bounds Read vulnerability in multiple products A heap out-of-bounds memory read flaw was found in the virtual nvme device in QEMU. | 6.5 |
2023-08-03 | CVE-2023-3180 | Out-of-bounds Write vulnerability in multiple products A flaw was found in the QEMU virtual crypto device while handling data encryption/decryption requests in virtio_crypto_handle_sym_req. | 6.5 |
2023-07-24 | CVE-2023-3019 | Use After Free vulnerability in multiple products A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. | 6.5 |
2023-07-11 | CVE-2023-3354 | NULL Pointer Dereference vulnerability in multiple products A flaw was found in the QEMU built-in VNC server. | 7.5 |
2021-06-02 | CVE-2021-3545 | Use of Uninitialized Resource vulnerability in multiple products An information disclosure vulnerability was found in the virtio vhost-user GPU device (vhost-user-gpu) of QEMU in versions up to and including 6.0. | 6.5 |