Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the e1000_receive function in the e1000 device driver (hw/e1000.c) in QEMU 1.3.0-rc2 and other versions, when the SBP and LPE flags are disabled, allows remote attackers to cause a denial of service (guest OS crash) and possibly execute arbitrary guest code via a large packet.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
QEMU 缓冲区错误漏洞
Vulnerability Description
QEMU(又名Quick Emulator)是法国程序员法布里斯-贝拉(Fabrice Bellard)所研发的一套模拟处理器软件。该软件具有速度快、跨平台等特点。 QEMU 1.3.0-rc2以及其它版本中的e1000设备驱动(hw/e1000.c)中的e1000_receive函数中存在缓冲区溢出漏洞。在未启用SBP以及LPE标志寄存器的情况下,远程攻击者可通过较大的报文利用该漏洞导致拒绝服务(访客端操作系统崩溃)并有可能执行任意访客端代码。
CVSS Information
N/A
Vulnerability Type
N/A