Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
448 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.5) | 4.1% | — | Qemu | 4/11/2014 | 16/6/2026 | Buffer overflow in the pxa2xx_ssp_load function in hw/arm/pxa2xx.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted s->rx_level value in a savevm image. | |
| Modificada | Alta (7.5) | 4.1% | — | Qemu | 4/11/2014 | 16/6/2026 | Buffer overflow in target-arm/machine.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a negative value in cpreg_vmstate_array_len in a savevm image. | |
| Modificada | Alta (7.5) | 5.2% | — | Qemu | 4/11/2014 | 16/6/2026 | Buffer overflow in hw/ssi/pl022.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service or possibly execute arbitrary code via crafted tx_fifo_head and rx_fifo_head values in a savevm image. | |
| Modificada | Alta (7.5) | 3.3% | — | Qemu | 4/11/2014 | 16/6/2026 | Buffer overflow in hw/pci/pcie_aer.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a large log_num value in a savevm image. | |
| Modificada | Alta (7.5) | 5.3% | — | Qemu | 4/11/2014 | 16/6/2026 | Buffer overflow in hw/timer/hpet.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via vectors related to the number of timers. | |
| Modificada | Alta (7.5) | 4.1% | — | Qemu | 4/11/2014 | 16/6/2026 | Buffer overflow in hw/ide/ahci.c in QEMU before 1.7.2 allows remote attackers to cause a denial of service and possibly execute arbitrary code via vectors related to migrating ports. | |
| Modificada | Alta (7.5) | 5.1% | — | Qemu | 4/11/2014 | 16/6/2026 | The virtio_load function in virtio/virtio.c in QEMU 1.x before 1.7.2 allows remote attackers to execute arbitrary code via a crafted savevm image, which triggers an out-of-bounds write. | |
| Modificada | Alta (7.5) | 5.0% | — | Qemu | 4/11/2014 | 16/6/2026 | The virtio_net_load function in hw/net/virtio-net.c in QEMU 1.5.0 through 1.7.x before 1.7.2 allows remote attackers to cause a denial of service or possibly execute arbitrary code via vectors in which the value of curr_queues is greater than max_queues, which triggers an out-of-bounds write. | |
| Modificada | Alta (7.5) | 5.3% | — | Qemu | 4/11/2014 | 16/6/2026 | Buffer overflow in virtio_net_load function in net/virtio-net.c in QEMU 1.3.0 through 1.7.x before 1.7.2 might allow remote attackers to execute arbitrary code via a large MAC table. | |
| Modificada | Alta (7.5) | 4.9% | — | Qemu | 4/11/2014 | 16/6/2026 | Integer signedness error in the virtio_net_load function in hw/net/virtio-net.c in QEMU 1.x before 1.7.2 allows remote attackers to execute arbitrary code via a crafted savevm image, which triggers a buffer overflow. | |
| Modificada | Baja (2.1) | 0.45% | — | QemuDebian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux EUS+8 | 1/11/2014 | 17/6/2026 | The VGA emulator in QEMU allows local guest users to read host memory by setting the display to a high resolution. | |
| Modificada | Media (6.8) | 1.6% | — | Qemu | 26/8/2014 | 17/6/2026 | vmstate_xhci_event in hw/usb/hcd-xhci.c in QEMU 1.6.0 does not terminate the list with the VMSTATE_END_OF_LIST macro, which allows attackers to cause a denial of service (out-of-bounds access, infinite loop, and memory corruption) and possibly gain privileges via unspecified vectors. | |
| Modificada | Media (4.9) | 0.72% | — | Canonical Ubuntu LinuxQemu | 8/5/2014 | 16/6/2026 | hw/net/vmxnet3.c in QEMU 2.0.0-rc0, 1.7.1, and earlier allows local guest users to cause a denial of service or possibly execute arbitrary code via vectors related to (1) RX or (2) TX queue numbers or (3) interrupt indices. NOTE: some of these details are obtained from third party information. | |
| Modificada | Alta (7.2) | 0.38% | — | Qemu | 23/4/2014 | 17/6/2026 | Off-by-one error in the cmd_smart function in the smart self test in hw/ide/core.c in QEMU before 2.0 allows local users to have unspecified impact via a SMART EXECUTE OFFLINE command that triggers a buffer underflow and memory corruption. | |
| Modificada | Media (4.9) | 0.70% | — | QemuRedhat Enterprise Linux | 18/4/2014 | 17/6/2026 | Integer overflow in the virtio_net_handle_mac function in hw/net/virtio-net.c in QEMU 2.0 and earlier allows local guest users to execute arbitrary code via a MAC addresses table update request, which triggers a heap-based buffer overflow. | |
| Modificada | Media (4) | 0.49% | — | QemuRedhat Enterprise LinuxXEN | 1/4/2014 | 16/6/2026 | Buffer overflow in hw/scsi-disk.c in the SCSI subsystem in QEMU before 0.15.2, as used by Xen, might allow local guest users with permission to access the CD-ROM to cause a denial of service (guest crash) via a crafted SAI READ CAPACITY SCSI command. NOTE: this is only a vulnerability when root has manually modified… | |
| Modificada | Media (6.8) | 2.3% | — | Redhat Enterprise LinuxRedhat Enterprise Linux Server SupplementaryQemu | 26/2/2014 | 16/6/2026 | Buffer overflow in the ccid_card_vscard_handle_message function in hw/ccid-card-passthru.c in QEMU before 0.15.2 and 1.x before 1.0-rc4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted VSC_ATR message. | |
| Modificada | Baja (2.7) | 0.58% | — | QemuXEN | 19/1/2014 | 16/6/2026 | The qdisk PV disk backend in qemu-xen in Xen 4.2.x and 4.3.x before 4.3.1, and qemu 1.1 and other versions, allows local HVM guests to cause a denial of service (domain grant reference consumption) via unspecified vectors. | |
| Modificada | Baja (2.3) | 0.46% | — | Qemu | 11/10/2013 | 16/6/2026 | Use-after-free vulnerability in the virtio-pci implementation in Qemu 1.4.0 through 1.6.0 allows local users to cause a denial of service (daemon crash) by "hot-unplugging" a virtio device. | |
| Modificada | Alta (7.2) | 0.43% | — | QemuOpensuseRedhat Enterprise Linux DesktopRedhat Enterprise Linux Server+3 | 4/10/2013 | 16/6/2026 | Buffer overflow in the SCSI implementation in QEMU, as used in Xen, when a SCSI controller has more than 256 attached devices, allows local users to gain privileges via a small transfer buffer in a REPORT LUNS command. | |
| Modificada | Media (6.9) | 0.38% | — | Qemu | 21/5/2013 | 16/6/2026 | The qemu guest agent in Qemu 1.4.1 and earlier, as used by Xen, when started in daemon mode, uses weak permissions for certain files, which allows local users to read and write to these files. | |
| Modificada | Alta (9.3) | 4.9% | — | QemuFedoraproject FedoraOpensuseSuse Linux Enterprise Server+8 | 13/2/2013 | 16/6/2026 | Buffer overflow in the e1000_receive function in the e1000 device driver (hw/e1000.c) in QEMU 1.3.0-rc2 and other versions, when the SBP and LPE flags are disabled, allows remote attackers to cause a denial of service (guest OS crash) and possibly execute arbitrary guest code via a large packet. | |
| Modificada | Alta (7.2) | 0.53% | — | QemuXENOpensuseSuse Linux Enterprise Desktop+9 | 23/11/2012 | 16/6/2026 | Qemu, as used in Xen 4.0, 4.1 and possibly other products, when emulating certain devices with a virtual console backend, allows local OS guest users to gain privileges via a crafted escape VT100 sequence that triggers the overwrite of a "device model's address space." | |
| Modificada | Media (4.4) | 0.34% | — | Qemu | 7/8/2012 | 16/6/2026 | The bdrv_open function in Qemu 1.0 does not properly handle the failure of the mkstemp function, when in snapshot node, which allows local users to overwrite or read arbitrary files via a symlink attack on an unspecified temporary file. | |
| Modificada | Baja (2.1) | 0.44% | — | Qemu | 21/6/2012 | 16/6/2026 | The change_process_uid function in os-posix.c in Qemu 0.14.0 and earlier does not properly drop group privileges when the -runas option is used, which allows local guest users to access restricted files on the host. |