CVE Vulnerabilities

CVE-2014-0150

Published: Apr 18, 2014 | Modified: Nov 02, 2020
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.9 MEDIUM
AV:A/AC:M/Au:S/C:P/I:P/A:P
RedHat/V2
4 MODERATE
AV:A/AC:H/Au:S/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM

Integer overflow in the virtio_net_handle_mac function in hw/net/virtio-net.c in QEMU 2.0 and earlier allows local guest users to execute arbitrary code via a MAC addresses table update request, which triggers a heap-based buffer overflow.

Affected Software

Name Vendor Start Version End Version
Qemu Qemu * 2.0 (including)
Qemu Qemu * 2.0.0 (including)
Qemu Qemu 0.1.0 (including) 0.1.0 (including)
Qemu Qemu 0.1.1 (including) 0.1.1 (including)
Qemu Qemu 0.1.2 (including) 0.1.2 (including)
Qemu Qemu 0.1.3 (including) 0.1.3 (including)
Qemu Qemu 0.1.4 (including) 0.1.4 (including)
Qemu Qemu 0.1.5 (including) 0.1.5 (including)
Qemu Qemu 0.1.6 (including) 0.1.6 (including)
Qemu Qemu 0.2.0 (including) 0.2.0 (including)
Qemu Qemu 0.3.0 (including) 0.3.0 (including)
Qemu Qemu 0.4.0 (including) 0.4.0 (including)
Qemu Qemu 0.4.1 (including) 0.4.1 (including)
Qemu Qemu 0.4.2 (including) 0.4.2 (including)
Qemu Qemu 0.4.3 (including) 0.4.3 (including)
Qemu Qemu 0.5.0 (including) 0.5.0 (including)
Qemu Qemu 0.5.1 (including) 0.5.1 (including)
Qemu Qemu 0.5.2 (including) 0.5.2 (including)
Qemu Qemu 0.5.3 (including) 0.5.3 (including)
Qemu Qemu 0.5.4 (including) 0.5.4 (including)
Qemu Qemu 0.5.5 (including) 0.5.5 (including)
Qemu Qemu 0.6.0 (including) 0.6.0 (including)
Qemu Qemu 0.6.1 (including) 0.6.1 (including)
Qemu Qemu 0.7.0 (including) 0.7.0 (including)
Qemu Qemu 0.7.1 (including) 0.7.1 (including)
Qemu Qemu 0.7.2 (including) 0.7.2 (including)
Qemu Qemu 0.8.0 (including) 0.8.0 (including)
Qemu Qemu 0.8.1 (including) 0.8.1 (including)
Qemu Qemu 0.8.2 (including) 0.8.2 (including)
Qemu Qemu 0.9.0 (including) 0.9.0 (including)
Qemu Qemu 0.9.1 (including) 0.9.1 (including)
Qemu Qemu 0.9.1-5 (including) 0.9.1-5 (including)
Qemu Qemu 0.10.0 (including) 0.10.0 (including)
Qemu Qemu 0.10.1 (including) 0.10.1 (including)
Qemu Qemu 0.10.2 (including) 0.10.2 (including)
Qemu Qemu 0.10.3 (including) 0.10.3 (including)
Qemu Qemu 0.10.4 (including) 0.10.4 (including)
Qemu Qemu 0.10.5 (including) 0.10.5 (including)
Qemu Qemu 0.10.6 (including) 0.10.6 (including)
Qemu Qemu 0.11.0 (including) 0.11.0 (including)
Qemu Qemu 0.11.0-rc0 (including) 0.11.0-rc0 (including)
Qemu Qemu 0.11.0-rc1 (including) 0.11.0-rc1 (including)
Qemu Qemu 0.11.0-rc2 (including) 0.11.0-rc2 (including)
Qemu Qemu 0.11.1 (including) 0.11.1 (including)
Qemu Qemu 0.12.0 (including) 0.12.0 (including)
Qemu Qemu 0.12.0-rc1 (including) 0.12.0-rc1 (including)
Qemu Qemu 0.12.0-rc2 (including) 0.12.0-rc2 (including)
Qemu Qemu 0.12.1 (including) 0.12.1 (including)
Qemu Qemu 0.12.2 (including) 0.12.2 (including)
Qemu Qemu 0.12.3 (including) 0.12.3 (including)
Qemu Qemu 0.12.4 (including) 0.12.4 (including)
Qemu Qemu 0.12.5 (including) 0.12.5 (including)
Qemu Qemu 0.13.0 (including) 0.13.0 (including)
Qemu Qemu 0.13.0-rc0 (including) 0.13.0-rc0 (including)
Qemu Qemu 0.13.0-rc1 (including) 0.13.0-rc1 (including)
Qemu Qemu 0.14.0 (including) 0.14.0 (including)
Qemu Qemu 0.14.0-rc0 (including) 0.14.0-rc0 (including)
Qemu Qemu 0.14.0-rc1 (including) 0.14.0-rc1 (including)
Qemu Qemu 0.14.0-rc2 (including) 0.14.0-rc2 (including)
Qemu Qemu 0.14.1 (including) 0.14.1 (including)
Qemu Qemu 0.15.0-rc1 (including) 0.15.0-rc1 (including)
Qemu Qemu 0.15.0-rc2 (including) 0.15.0-rc2 (including)
Qemu Qemu 0.15.1 (including) 0.15.1 (including)
Qemu Qemu 0.15.2 (including) 0.15.2 (including)
Qemu Qemu 1.0 (including) 1.0 (including)
Qemu Qemu 1.0-rc1 (including) 1.0-rc1 (including)
Qemu Qemu 1.0-rc2 (including) 1.0-rc2 (including)
Qemu Qemu 1.0-rc3 (including) 1.0-rc3 (including)
Qemu Qemu 1.0-rc4 (including) 1.0-rc4 (including)
Qemu Qemu 1.0.1 (including) 1.0.1 (including)
Qemu Qemu 1.1 (including) 1.1 (including)
Qemu Qemu 1.1-rc1 (including) 1.1-rc1 (including)
Qemu Qemu 1.1-rc2 (including) 1.1-rc2 (including)
Qemu Qemu 1.1-rc3 (including) 1.1-rc3 (including)
Qemu Qemu 1.1-rc4 (including) 1.1-rc4 (including)
Qemu Qemu 1.4.1 (including) 1.4.1 (including)
Qemu Qemu 1.4.2 (including) 1.4.2 (including)
Qemu Qemu 1.5.0 (including) 1.5.0 (including)
Qemu Qemu 1.5.0-rc1 (including) 1.5.0-rc1 (including)
Qemu Qemu 1.5.0-rc2 (including) 1.5.0-rc2 (including)
Qemu Qemu 1.5.0-rc3 (including) 1.5.0-rc3 (including)
Qemu Qemu 1.5.1 (including) 1.5.1 (including)
Qemu Qemu 1.5.2 (including) 1.5.2 (including)
Qemu Qemu 1.5.3 (including) 1.5.3 (including)
Qemu Qemu 1.6.0 (including) 1.6.0 (including)
Qemu Qemu 1.6.0-rc1 (including) 1.6.0-rc1 (including)
Qemu Qemu 1.6.0-rc2 (including) 1.6.0-rc2 (including)
Qemu Qemu 1.6.0-rc3 (including) 1.6.0-rc3 (including)
Qemu Qemu 1.6.1 (including) 1.6.1 (including)
Qemu Qemu 1.6.2 (including) 1.6.2 (including)
Qemu Qemu 1.7.1 (including) 1.7.1 (including)
Qemu Qemu 2.0.0-rc0 (including) 2.0.0-rc0 (including)
Qemu Qemu 2.0.0-rc1 (including) 2.0.0-rc1 (including)
Qemu Qemu 2.0.0-rc2 (including) 2.0.0-rc2 (including)
Qemu Qemu 2.0.0-rc3 (including) 2.0.0-rc3 (including)
Enterprise_linux Redhat 6.0 (including) 6.0 (including)
OpenStack 3 for RHEL 6 RedHat qemu-kvm-rhev-2:0.12.1.2-2.415.el6_5.8 *
OpenStack 4 for RHEL 6 RedHat qemu-kvm-rhev-2:0.12.1.2-2.415.el6_5.8 *
Red Hat Enterprise Linux 6 RedHat qemu-kvm-2:0.12.1.2-2.415.el6_5.8 *
RHEV 3.X Hypervisor and Agents for RHEL-6 RedHat qemu-kvm-rhev-2:0.12.1.2-2.415.el6_5.8 *
RHEV 3.X Hypervisor and Agents for RHEL-6 RedHat rhev-hypervisor6-0:6.5-20140603.2.el6ev *
Qemu Ubuntu devel *
Qemu Ubuntu saucy *
Qemu Ubuntu trusty *
Qemu-kvm Ubuntu lucid *
Qemu-kvm Ubuntu precise *
Qemu-kvm Ubuntu quantal *

References