CVE Vulnerabilities

CVE-2014-2894

Published: Apr 23, 2014 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Off-by-one error in the cmd_smart function in the smart self test in hw/ide/core.c in QEMU before 2.0 allows local users to have unspecified impact via a SMART EXECUTE OFFLINE command that triggers a buffer underflow and memory corruption.

Affected Software

Name Vendor Start Version End Version
Qemu Qemu * 1.7.1 (including)
Qemu Qemu 0.1.0 (including) 0.1.0 (including)
Qemu Qemu 0.1.1 (including) 0.1.1 (including)
Qemu Qemu 0.1.2 (including) 0.1.2 (including)
Qemu Qemu 0.1.3 (including) 0.1.3 (including)
Qemu Qemu 0.1.4 (including) 0.1.4 (including)
Qemu Qemu 0.1.5 (including) 0.1.5 (including)
Qemu Qemu 0.1.6 (including) 0.1.6 (including)
Qemu Qemu 0.2.0 (including) 0.2.0 (including)
Qemu Qemu 0.3.0 (including) 0.3.0 (including)
Qemu Qemu 0.4.0 (including) 0.4.0 (including)
Qemu Qemu 0.4.1 (including) 0.4.1 (including)
Qemu Qemu 0.4.2 (including) 0.4.2 (including)
Qemu Qemu 0.4.3 (including) 0.4.3 (including)
Qemu Qemu 0.5.0 (including) 0.5.0 (including)
Qemu Qemu 0.5.1 (including) 0.5.1 (including)
Qemu Qemu 0.5.2 (including) 0.5.2 (including)
Qemu Qemu 0.5.3 (including) 0.5.3 (including)
Qemu Qemu 0.5.4 (including) 0.5.4 (including)
Qemu Qemu 0.5.5 (including) 0.5.5 (including)
Qemu Qemu 0.6.0 (including) 0.6.0 (including)
Qemu Qemu 0.6.1 (including) 0.6.1 (including)
Qemu Qemu 0.7.0 (including) 0.7.0 (including)
Qemu Qemu 0.7.1 (including) 0.7.1 (including)
Qemu Qemu 0.7.2 (including) 0.7.2 (including)
Qemu Qemu 0.8.0 (including) 0.8.0 (including)
Qemu Qemu 0.8.1 (including) 0.8.1 (including)
Qemu Qemu 0.8.2 (including) 0.8.2 (including)
Qemu Qemu 0.9.0 (including) 0.9.0 (including)
Qemu Qemu 0.9.1 (including) 0.9.1 (including)
Qemu Qemu 0.9.1-5 (including) 0.9.1-5 (including)
Qemu Qemu 0.10.0 (including) 0.10.0 (including)
Qemu Qemu 0.10.1 (including) 0.10.1 (including)
Qemu Qemu 0.10.2 (including) 0.10.2 (including)
Qemu Qemu 0.10.3 (including) 0.10.3 (including)
Qemu Qemu 0.10.4 (including) 0.10.4 (including)
Qemu Qemu 0.10.5 (including) 0.10.5 (including)
Qemu Qemu 0.10.6 (including) 0.10.6 (including)
Qemu Qemu 0.11.0 (including) 0.11.0 (including)
Qemu Qemu 0.11.0-rc0 (including) 0.11.0-rc0 (including)
Qemu Qemu 0.11.0-rc1 (including) 0.11.0-rc1 (including)
Qemu Qemu 0.11.0-rc2 (including) 0.11.0-rc2 (including)
Qemu Qemu 0.11.1 (including) 0.11.1 (including)
Qemu Qemu 0.12.0 (including) 0.12.0 (including)
Qemu Qemu 0.12.0-rc1 (including) 0.12.0-rc1 (including)
Qemu Qemu 0.12.0-rc2 (including) 0.12.0-rc2 (including)
Qemu Qemu 0.12.1 (including) 0.12.1 (including)
Qemu Qemu 0.12.2 (including) 0.12.2 (including)
Qemu Qemu 0.12.3 (including) 0.12.3 (including)
Qemu Qemu 0.12.4 (including) 0.12.4 (including)
Qemu Qemu 0.12.5 (including) 0.12.5 (including)
Qemu Qemu 0.13.0 (including) 0.13.0 (including)
Qemu Qemu 0.13.0-rc0 (including) 0.13.0-rc0 (including)
Qemu Qemu 0.13.0-rc1 (including) 0.13.0-rc1 (including)
Qemu Qemu 0.14.0 (including) 0.14.0 (including)
Qemu Qemu 0.14.0-rc0 (including) 0.14.0-rc0 (including)
Qemu Qemu 0.14.0-rc1 (including) 0.14.0-rc1 (including)
Qemu Qemu 0.14.0-rc2 (including) 0.14.0-rc2 (including)
Qemu Qemu 0.14.1 (including) 0.14.1 (including)
Qemu Qemu 0.15.0-rc1 (including) 0.15.0-rc1 (including)
Qemu Qemu 0.15.0-rc2 (including) 0.15.0-rc2 (including)
Qemu Qemu 0.15.1 (including) 0.15.1 (including)
Qemu Qemu 0.15.2 (including) 0.15.2 (including)
Qemu Qemu 1.0 (including) 1.0 (including)
Qemu Qemu 1.0-rc1 (including) 1.0-rc1 (including)
Qemu Qemu 1.0-rc2 (including) 1.0-rc2 (including)
Qemu Qemu 1.0-rc3 (including) 1.0-rc3 (including)
Qemu Qemu 1.0-rc4 (including) 1.0-rc4 (including)
Qemu Qemu 1.0.1 (including) 1.0.1 (including)
Qemu Qemu 1.1 (including) 1.1 (including)
Qemu Qemu 1.1-rc1 (including) 1.1-rc1 (including)
Qemu Qemu 1.1-rc2 (including) 1.1-rc2 (including)
Qemu Qemu 1.1-rc3 (including) 1.1-rc3 (including)
Qemu Qemu 1.1-rc4 (including) 1.1-rc4 (including)
Qemu Qemu 1.1.1 (including) 1.1.1 (including)
Qemu Qemu 1.1.2 (including) 1.1.2 (including)
Qemu Qemu 1.2.0 (including) 1.2.0 (including)
Qemu Qemu 1.2.0-rc0 (including) 1.2.0-rc0 (including)
Qemu Qemu 1.2.0-rc1 (including) 1.2.0-rc1 (including)
Qemu Qemu 1.2.0-rc2 (including) 1.2.0-rc2 (including)
Qemu Qemu 1.2.0-rc3 (including) 1.2.0-rc3 (including)
Qemu Qemu 1.2.1 (including) 1.2.1 (including)
Qemu Qemu 1.2.2 (including) 1.2.2 (including)
Qemu Qemu 1.3.0 (including) 1.3.0 (including)
Qemu Qemu 1.3.0-rc0 (including) 1.3.0-rc0 (including)
Qemu Qemu 1.3.0-rc1 (including) 1.3.0-rc1 (including)
Qemu Qemu 1.3.0-rc2 (including) 1.3.0-rc2 (including)
Qemu Qemu 1.3.1 (including) 1.3.1 (including)
Qemu Qemu 1.4.0-rc0 (including) 1.4.0-rc0 (including)
Qemu Qemu 1.4.0-rc1 (including) 1.4.0-rc1 (including)
Qemu Qemu 1.4.1 (including) 1.4.1 (including)
Qemu Qemu 1.4.2 (including) 1.4.2 (including)
Qemu Qemu 1.5.0 (including) 1.5.0 (including)
Qemu Qemu 1.5.0-rc1 (including) 1.5.0-rc1 (including)
Qemu Qemu 1.5.0-rc2 (including) 1.5.0-rc2 (including)
Qemu Qemu 1.5.0-rc3 (including) 1.5.0-rc3 (including)
Qemu Qemu 1.5.1 (including) 1.5.1 (including)
Qemu Qemu 1.5.2 (including) 1.5.2 (including)
Qemu Qemu 1.5.3 (including) 1.5.3 (including)
Qemu Qemu 1.6.0 (including) 1.6.0 (including)
Qemu Qemu 1.6.0-rc1 (including) 1.6.0-rc1 (including)
Qemu Qemu 1.6.0-rc2 (including) 1.6.0-rc2 (including)
Qemu Qemu 1.6.0-rc3 (including) 1.6.0-rc3 (including)
Qemu Qemu 1.6.1 (including) 1.6.1 (including)
Qemu Qemu 1.6.2 (including) 1.6.2 (including)

References