Search CVE reports
441 – 450 of 471 results
The pciej_write function in hw/acpi_piix4.c in the PIIX4 Power Management emulation in qemu-kvm does not check if a device is hotpluggable before unplugging the PCI-ISA bridge, which allows privileged guest users to cause a denial...
1 affected package
qemu-kvm
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
qemu-kvm | — | — | — | — |
Multiple heap-based buffer overflows in the virtio-blk driver (hw/virtio-blk.c) in qemu-kvm 0.14.0 allow local guest users to cause a denial of service (guest crash) and possibly gain privileges via a (1) write request to the...
1 affected package
qemu-kvm
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
qemu-kvm | — | — | — | — |
qemu-kvm before 0.11.0 disables VNC authentication when the password is cleared, which allows remote attackers to bypass authentication and establish VNC sessions.
1 affected package
qemu-kvm
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
qemu-kvm | — | — | — | — |
The subpage MMIO initialization functionality in the subpage_register function in exec.c in QEMU-KVM, as used in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and KVM 83, does not properly...
2 affected packages
kvm, qemu-kvm
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
kvm | — | — | — | — |
qemu-kvm | — | — | — | — |
QEMU-KVM, as used in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and KVM 83, does not properly validate guest QXL driver pointers, which allows guest OS users to cause a denial of service...
2 affected packages
kvm, qemu-kvm
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
kvm | — | — | — | — |
qemu-kvm | — | — | — | — |
Some fixes available 5 of 11
The x86 emulator in KVM 83, when a guest is configured for Symmetric Multiprocessing (SMP), does not properly restrict writing of segment selectors to segment registers, which might allow guest OS users to cause a denial of...
9 affected packages
linux-ec2, kvm, linux, linux-fsl-imx51, linux-lts-backport-maverick...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
linux-ec2 | — | — | — | — |
kvm | — | — | — | — |
linux | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-source-2.6.15 | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
qemu-kvm | — | — | — | — |
Buffer overflow in the usb_host_handle_control function in the USB passthrough handling implementation in usb-linux.c in QEMU before 0.11.1 allows guest OS users to cause a denial of service (guest OS crash or hang) or possibly...
2 affected packages
kvm, qemu-kvm
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
kvm | — | — | — | — |
qemu-kvm | — | — | — | — |
Some fixes available 7 of 11
The do_insn_fetch function in arch/x86/kvm/emulate.c in the x86 emulator in the KVM subsystem in the Linux kernel before 2.6.32-rc8-next-20091125 tries to interpret instructions that contain too many bytes to be valid,...
9 affected packages
kvm, linux, linux-ec2, linux-fsl-imx51, linux-lts-backport-maverick...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
kvm | — | — | — | — |
linux | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-source-2.6.15 | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
qemu-kvm | — | — | — | — |
Some fixes available 3 of 8
The handle_dr function in arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 2.6.31.1 does not properly verify the Current Privilege Level (CPL) before accessing a debug register, which allows guest OS users to...
9 affected packages
kvm, linux, linux-ec2, linux-fsl-imx51, linux-lts-backport-maverick...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
kvm | — | — | — | — |
linux | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-source-2.6.15 | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
qemu-kvm | — | — | — | — |
The update_cr8_intercept function in arch/x86/kvm/x86.c in the KVM subsystem in the Linux kernel before 2.6.32-rc1 does not properly handle the absence of an Advanced Programmable Interrupt Controller (APIC), which allows local...
9 affected packages
kvm, linux, linux-ec2, linux-fsl-imx51, linux-lts-backport-maverick...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
kvm | — | — | — | — |
linux | — | — | — | — |
linux-ec2 | — | — | — | — |
linux-fsl-imx51 | — | — | — | — |
linux-lts-backport-maverick | — | — | — | — |
linux-mvl-dove | — | — | — | — |
linux-source-2.6.15 | — | — | — | — |
linux-ti-omap4 | — | — | — | — |
qemu-kvm | — | — | — | — |