CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
94241 | CVE-2016-7421 | Candidate | The pvscsi_ring_pop_req_descr function in hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by leveraging failure to limit process IO loop to the ring size. | Assigned (20160909) | None (candidate not yet proposed) | View | |
94242 | CVE-2016-7422 | Candidate | The virtqueue_map_desc function in hw/virtio/virtio.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) via a large I/O descriptor buffer length value. | Assigned (20160909) | None (candidate not yet proposed) | View | |
94243 | CVE-2016-7423 | Candidate | The mptsas_process_scsi_io_request function in QEMU (aka Quick Emulator), when built with LSI SAS1068 Host Bus emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors involving MPTSASRequest objects. | Assigned (20160909) | None (candidate not yet proposed) | View | |
94244 | CVE-2016-7424 | Candidate | The put_no_rnd_pixels8_xy2_mmx function in x86/rnd_template.c in libav 11.7 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted MP3 file. | Assigned (20160909) | None (candidate not yet proposed) | View | |
94245 | CVE-2016-7425 | Candidate | The arcmsr_iop_message_xfer function in drivers/scsi/arcmsr/arcmsr_hba.c in the Linux kernel through 4.8.2 does not restrict a certain length field, which allows local users to gain privileges or cause a denial of service (heap-based buffer overflow) via an ARCMSR_MESSAGE_WRITE_WQBUFFER control code. | Assigned (20160909) | None (candidate not yet proposed) | View |
Page 18849 of 20943, showing 5 records out of 104715 total, starting on record 94241, ending on 94245