The virtio_load function in virtio/virtio.c in QEMU 1.x before 1.7.2 allows remote attackers to execute arbitrary code via a crafted savevm image, which triggers an out-of-bounds write.
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Qemu | Qemu | 1.0 (including) | 1.0 (including) |
Qemu | Qemu | 1.0-rc1 (including) | 1.0-rc1 (including) |
Qemu | Qemu | 1.0-rc2 (including) | 1.0-rc2 (including) |
Qemu | Qemu | 1.0-rc3 (including) | 1.0-rc3 (including) |
Qemu | Qemu | 1.0-rc4 (including) | 1.0-rc4 (including) |
Qemu | Qemu | 1.0.1 (including) | 1.0.1 (including) |
Qemu | Qemu | 1.1 (including) | 1.1 (including) |
Qemu | Qemu | 1.1-rc1 (including) | 1.1-rc1 (including) |
Qemu | Qemu | 1.1-rc2 (including) | 1.1-rc2 (including) |
Qemu | Qemu | 1.1-rc3 (including) | 1.1-rc3 (including) |
Qemu | Qemu | 1.1-rc4 (including) | 1.1-rc4 (including) |
Qemu | Qemu | 1.4.1 (including) | 1.4.1 (including) |
Qemu | Qemu | 1.4.2 (including) | 1.4.2 (including) |
Qemu | Qemu | 1.5.0 (including) | 1.5.0 (including) |
Qemu | Qemu | 1.5.0-rc1 (including) | 1.5.0-rc1 (including) |
Qemu | Qemu | 1.5.0-rc2 (including) | 1.5.0-rc2 (including) |
Qemu | Qemu | 1.5.0-rc3 (including) | 1.5.0-rc3 (including) |
Qemu | Qemu | 1.5.1 (including) | 1.5.1 (including) |
Qemu | Qemu | 1.5.2 (including) | 1.5.2 (including) |
Qemu | Qemu | 1.5.3 (including) | 1.5.3 (including) |
Qemu | Qemu | 1.6.0 (including) | 1.6.0 (including) |
Qemu | Qemu | 1.6.0-rc1 (including) | 1.6.0-rc1 (including) |
Qemu | Qemu | 1.6.0-rc2 (including) | 1.6.0-rc2 (including) |
Qemu | Qemu | 1.6.0-rc3 (including) | 1.6.0-rc3 (including) |
Qemu | Qemu | 1.6.1 (including) | 1.6.1 (including) |
Qemu | Qemu | 1.6.2 (including) | 1.6.2 (including) |
Qemu | Qemu | 1.7.1 (including) | 1.7.1 (including) |
OpenStack 3 for RHEL 6 | RedHat | qemu-kvm-rhev-2:0.12.1.2-2.415.el6_5.10 | * |
OpenStack 4 for RHEL 6 | RedHat | qemu-kvm-rhev-2:0.12.1.2-2.415.el6_5.10 | * |
Red Hat Enterprise Linux 6 | RedHat | qemu-kvm-2:0.12.1.2-2.415.el6_5.10 | * |
Red Hat Enterprise Linux 7 | RedHat | qemu-kvm-10:1.5.3-60.el7_0.5 | * |
Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 7 | RedHat | qemu-kvm-rhev-10:1.5.3-60.el7_0.7 | * |
RHEV 3.X Hypervisor and Agents for RHEL-6 | RedHat | qemu-kvm-rhev-2:0.12.1.2-2.415.el6_5.10 | * |
RHEV 3.X Hypervisor and Agents for RHEL-6 | RedHat | rhev-hypervisor6-0:6.5-20140603.2.el6ev | * |
Qemu | Ubuntu | esm-infra-legacy/trusty | * |
Qemu | Ubuntu | saucy | * |
Qemu | Ubuntu | trusty | * |
Qemu | Ubuntu | trusty/esm | * |
Qemu | Ubuntu | upstream | * |
Qemu-kvm | Ubuntu | lucid | * |
Qemu-kvm | Ubuntu | precise | * |
Qemu-kvm | Ubuntu | quantal | * |
Qemu-kvm | Ubuntu | upstream | * |