Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The usb_device_post_load function in hw/usb/bus.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a crafted savevm image, related to a negative setup_len or setup_index value.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
QEMU 缓冲区错误漏洞
Vulnerability Description
QEMU(又名Quick Emulator)是法国程序员法布里斯-贝拉(Fabrice Bellard)所研发的一套模拟处理器软件。该软件具有速度快、跨平台等特点。 QEMU 1.7.2之前版本的hw/usb/bus.c脚本中的‘usb_device_post_load’函数中存在安全漏洞。远程攻击者可借助特制的savevm图片利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A