CVE-2014-0182 PUBLISHED

Heap-based buffer overflow in the virtio_load function in hw/virtio/virtio.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a crafted config length in a savevm image.

EPSS 3.49% · 87.5th percentile

Risk Scores

EPSS Score
3.49%
87.5th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSqemu0, 1.5.0+dfsg-3ubuntu5, 1.5.0+dfsg-3ubuntu6

Timeline

References

Open in Interactive Console →