CVE List

Id CVE No. Status Description Phase Votes Comments Actions
94241  CVE-2016-7421  Candidate  The pvscsi_ring_pop_req_descr function in hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) by leveraging failure to limit process IO loop to the ring size.  Assigned (20160909)  None (candidate not yet proposed)    View
94242  CVE-2016-7422  Candidate  The virtqueue_map_desc function in hw/virtio/virtio.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process crash) via a large I/O descriptor buffer length value.  Assigned (20160909)  None (candidate not yet proposed)    View
94243  CVE-2016-7423  Candidate  The mptsas_process_scsi_io_request function in QEMU (aka Quick Emulator), when built with LSI SAS1068 Host Bus emulation support, allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors involving MPTSASRequest objects.  Assigned (20160909)  None (candidate not yet proposed)    View
94244  CVE-2016-7424  Candidate  The put_no_rnd_pixels8_xy2_mmx function in x86/rnd_template.c in libav 11.7 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted MP3 file.  Assigned (20160909)  None (candidate not yet proposed)    View
94245  CVE-2016-7425  Candidate  The arcmsr_iop_message_xfer function in drivers/scsi/arcmsr/arcmsr_hba.c in the Linux kernel through 4.8.2 does not restrict a certain length field, which allows local users to gain privileges or cause a denial of service (heap-based buffer overflow) via an ARCMSR_MESSAGE_WRITE_WQBUFFER control code.  Assigned (20160909)  None (candidate not yet proposed)    View

Page 18849 of 20943, showing 5 records out of 104715 total, starting on record 94241, ending on 94245

Actions