CVE Vulnerabilities

CVE-2014-2894

Published: Apr 23, 2014 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
4 MODERATE
AV:A/AC:H/Au:S/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM

Off-by-one error in the cmd_smart function in the smart self test in hw/ide/core.c in QEMU before 2.0 allows local users to have unspecified impact via a SMART EXECUTE OFFLINE command that triggers a buffer underflow and memory corruption.

Affected Software

Name Vendor Start Version End Version
Qemu Qemu * 1.7.1 (including)
Qemu Qemu 0.1.0 (including) 0.1.0 (including)
Qemu Qemu 0.1.1 (including) 0.1.1 (including)
Qemu Qemu 0.1.2 (including) 0.1.2 (including)
Qemu Qemu 0.1.3 (including) 0.1.3 (including)
Qemu Qemu 0.1.4 (including) 0.1.4 (including)
Qemu Qemu 0.1.5 (including) 0.1.5 (including)
Qemu Qemu 0.1.6 (including) 0.1.6 (including)
Qemu Qemu 0.2.0 (including) 0.2.0 (including)
Qemu Qemu 0.3.0 (including) 0.3.0 (including)
Qemu Qemu 0.4.0 (including) 0.4.0 (including)
Qemu Qemu 0.4.1 (including) 0.4.1 (including)
Qemu Qemu 0.4.2 (including) 0.4.2 (including)
Qemu Qemu 0.4.3 (including) 0.4.3 (including)
Qemu Qemu 0.5.0 (including) 0.5.0 (including)
Qemu Qemu 0.5.1 (including) 0.5.1 (including)
Qemu Qemu 0.5.2 (including) 0.5.2 (including)
Qemu Qemu 0.5.3 (including) 0.5.3 (including)
Qemu Qemu 0.5.4 (including) 0.5.4 (including)
Qemu Qemu 0.5.5 (including) 0.5.5 (including)
Qemu Qemu 0.6.0 (including) 0.6.0 (including)
Qemu Qemu 0.6.1 (including) 0.6.1 (including)
Qemu Qemu 0.7.0 (including) 0.7.0 (including)
Qemu Qemu 0.7.1 (including) 0.7.1 (including)
Qemu Qemu 0.7.2 (including) 0.7.2 (including)
Qemu Qemu 0.8.0 (including) 0.8.0 (including)
Qemu Qemu 0.8.1 (including) 0.8.1 (including)
Qemu Qemu 0.8.2 (including) 0.8.2 (including)
Qemu Qemu 0.9.0 (including) 0.9.0 (including)
Qemu Qemu 0.9.1 (including) 0.9.1 (including)
Qemu Qemu 0.9.1-5 (including) 0.9.1-5 (including)
Qemu Qemu 0.10.0 (including) 0.10.0 (including)
Qemu Qemu 0.10.1 (including) 0.10.1 (including)
Qemu Qemu 0.10.2 (including) 0.10.2 (including)
Qemu Qemu 0.10.3 (including) 0.10.3 (including)
Qemu Qemu 0.10.4 (including) 0.10.4 (including)
Qemu Qemu 0.10.5 (including) 0.10.5 (including)
Qemu Qemu 0.10.6 (including) 0.10.6 (including)
Qemu Qemu 0.11.0 (including) 0.11.0 (including)
Qemu Qemu 0.11.0-rc0 (including) 0.11.0-rc0 (including)
Qemu Qemu 0.11.0-rc1 (including) 0.11.0-rc1 (including)
Qemu Qemu 0.11.0-rc2 (including) 0.11.0-rc2 (including)
Qemu Qemu 0.11.1 (including) 0.11.1 (including)
Qemu Qemu 0.12.0 (including) 0.12.0 (including)
Qemu Qemu 0.12.0-rc1 (including) 0.12.0-rc1 (including)
Qemu Qemu 0.12.0-rc2 (including) 0.12.0-rc2 (including)
Qemu Qemu 0.12.1 (including) 0.12.1 (including)
Qemu Qemu 0.12.2 (including) 0.12.2 (including)
Qemu Qemu 0.12.3 (including) 0.12.3 (including)
Qemu Qemu 0.12.4 (including) 0.12.4 (including)
Qemu Qemu 0.12.5 (including) 0.12.5 (including)
Qemu Qemu 0.13.0 (including) 0.13.0 (including)
Qemu Qemu 0.13.0-rc0 (including) 0.13.0-rc0 (including)
Qemu Qemu 0.13.0-rc1 (including) 0.13.0-rc1 (including)
Qemu Qemu 0.14.0 (including) 0.14.0 (including)
Qemu Qemu 0.14.0-rc0 (including) 0.14.0-rc0 (including)
Qemu Qemu 0.14.0-rc1 (including) 0.14.0-rc1 (including)
Qemu Qemu 0.14.0-rc2 (including) 0.14.0-rc2 (including)
Qemu Qemu 0.14.1 (including) 0.14.1 (including)
Qemu Qemu 0.15.0-rc1 (including) 0.15.0-rc1 (including)
Qemu Qemu 0.15.0-rc2 (including) 0.15.0-rc2 (including)
Qemu Qemu 0.15.1 (including) 0.15.1 (including)
Qemu Qemu 0.15.2 (including) 0.15.2 (including)
Qemu Qemu 1.0 (including) 1.0 (including)
Qemu Qemu 1.0-rc1 (including) 1.0-rc1 (including)
Qemu Qemu 1.0-rc2 (including) 1.0-rc2 (including)
Qemu Qemu 1.0-rc3 (including) 1.0-rc3 (including)
Qemu Qemu 1.0-rc4 (including) 1.0-rc4 (including)
Qemu Qemu 1.0.1 (including) 1.0.1 (including)
Qemu Qemu 1.1 (including) 1.1 (including)
Qemu Qemu 1.1-rc1 (including) 1.1-rc1 (including)
Qemu Qemu 1.1-rc2 (including) 1.1-rc2 (including)
Qemu Qemu 1.1-rc3 (including) 1.1-rc3 (including)
Qemu Qemu 1.1-rc4 (including) 1.1-rc4 (including)
Qemu Qemu 1.1.1 (including) 1.1.1 (including)
Qemu Qemu 1.1.2 (including) 1.1.2 (including)
Qemu Qemu 1.2.0 (including) 1.2.0 (including)
Qemu Qemu 1.2.0-rc0 (including) 1.2.0-rc0 (including)
Qemu Qemu 1.2.0-rc1 (including) 1.2.0-rc1 (including)
Qemu Qemu 1.2.0-rc2 (including) 1.2.0-rc2 (including)
Qemu Qemu 1.2.0-rc3 (including) 1.2.0-rc3 (including)
Qemu Qemu 1.2.1 (including) 1.2.1 (including)
Qemu Qemu 1.2.2 (including) 1.2.2 (including)
Qemu Qemu 1.3.0 (including) 1.3.0 (including)
Qemu Qemu 1.3.0-rc0 (including) 1.3.0-rc0 (including)
Qemu Qemu 1.3.0-rc1 (including) 1.3.0-rc1 (including)
Qemu Qemu 1.3.0-rc2 (including) 1.3.0-rc2 (including)
Qemu Qemu 1.3.1 (including) 1.3.1 (including)
Qemu Qemu 1.4.0-rc0 (including) 1.4.0-rc0 (including)
Qemu Qemu 1.4.0-rc1 (including) 1.4.0-rc1 (including)
Qemu Qemu 1.4.1 (including) 1.4.1 (including)
Qemu Qemu 1.4.2 (including) 1.4.2 (including)
Qemu Qemu 1.5.0 (including) 1.5.0 (including)
Qemu Qemu 1.5.0-rc1 (including) 1.5.0-rc1 (including)
Qemu Qemu 1.5.0-rc2 (including) 1.5.0-rc2 (including)
Qemu Qemu 1.5.0-rc3 (including) 1.5.0-rc3 (including)
Qemu Qemu 1.5.1 (including) 1.5.1 (including)
Qemu Qemu 1.5.2 (including) 1.5.2 (including)
Qemu Qemu 1.5.3 (including) 1.5.3 (including)
Qemu Qemu 1.6.0 (including) 1.6.0 (including)
Qemu Qemu 1.6.0-rc1 (including) 1.6.0-rc1 (including)
Qemu Qemu 1.6.0-rc2 (including) 1.6.0-rc2 (including)
Qemu Qemu 1.6.0-rc3 (including) 1.6.0-rc3 (including)
Qemu Qemu 1.6.1 (including) 1.6.1 (including)
Qemu Qemu 1.6.2 (including) 1.6.2 (including)
OpenStack 3 for RHEL 6 RedHat qemu-kvm-rhev-2:0.12.1.2-2.415.el6_5.10 *
OpenStack 4 for RHEL 6 RedHat qemu-kvm-rhev-2:0.12.1.2-2.415.el6_5.10 *
Red Hat Enterprise Linux 6 RedHat qemu-kvm-2:0.12.1.2-2.415.el6_5.10 *
Red Hat Enterprise Linux 7 RedHat qemu-kvm-10:1.5.3-60.el7_0.2 *
RHEV 3.X Hypervisor and Agents for RHEL-6 RedHat qemu-kvm-rhev-2:0.12.1.2-2.415.el6_5.10 *
RHEV 3.X Hypervisor and Agents for RHEL-6 RedHat rhev-hypervisor6-0:6.5-20140603.2.el6ev *
Qemu Ubuntu devel *
Qemu Ubuntu saucy *
Qemu Ubuntu trusty *
Qemu-kvm Ubuntu lucid *
Qemu-kvm Ubuntu precise *
Qemu-kvm Ubuntu quantal *

References