QEMU(Quick Emulator)是法国法布里斯-贝拉(Fabrice Bellard)个人开发者的一套模拟处理器软件。该软件具有速度快、跨平台等特点。 QEMU存在安全漏洞,该漏洞源于e1000e NIC仿真代码存在释放后重用问题。攻击者可利用该漏洞使主机上的QEMU进程崩溃,进而导致拒绝服务。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 6 | any |
unknown |
| Red Hat | Red Hat Enterprise Linux 7 | any |
unknown |
any |
unknown | ||
| Red Hat | Red Hat Enterprise Linux 8 | 8090020231206155326.a75119d5< * |
unaffected |
8090020231206155326.a75119d5< * |
unaffected | ||
| Red Hat | Red Hat Enterprise Linux 8 Advanced Virtualization | any |
affected |
| Red Hat | Red Hat Enterprise Linux 8.6 Extended Update Support | 8060020231128234847.ad008a3a< * |
unaffected |
8060020231128234847.ad008a3a< * |
unaffected | ||
| Red Hat | Red Hat Enterprise Linux 8.8 Extended Update Support | 8080020240116113044.63b34585< * |
unaffected |
8080020240116113044.63b34585< * |
unaffected | ||
| Red Hat | Red Hat Enterprise Linux 9 | 17:8.2.0-11.el9_4< * |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 8 | 8090020231206155326.a75119d5 ~ * |
cpe:/a:redhat:enterprise_linux:8::crb
|
|
| Red Hat | Red Hat Enterprise Linux 8 | 8090020231206155326.a75119d5 ~ * |
cpe:/a:redhat:enterprise_linux:8::crb
|
|
| Red Hat | Red Hat Enterprise Linux 8.6 Extended Update Support | 8060020231128234847.ad008a3a ~ * |
cpe:/a:redhat:rhel_eus:8.6::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 8.6 Extended Update Support | 8060020231128234847.ad008a3a ~ * |
cpe:/a:redhat:rhel_eus:8.6::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 8.8 Extended Update Support | 8080020240116113044.63b34585 ~ * |
cpe:/a:redhat:rhel_eus:8.8::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 8.8 Extended Update Support | 8080020240116113044.63b34585 ~ * |
cpe:/a:redhat:rhel_eus:8.8::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 9 | 17:8.2.0-11.el9_4 ~ * |
cpe:/a:redhat:enterprise_linux:9::appstream
|
|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 8 Advanced Virtualization | - |
cpe:/a:redhat:advanced_virtualization:8::el8
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-3812 | 7.8 HIGH | Kernel: tun: bugs for oversize packet when napi frags enabled in tun_napi_alloc_frags |
| CVE-2023-38200 | 7.5 HIGH | Keylime: registrar is subject to a dos against ssl connections |
| CVE-2023-3567 | 7.1 HIGH | Kernel: use after free in vcs_read in drivers/tty/vt/vc_screen.c due to race |
| CVE-2023-3640 | 7.0 HIGH | Kernel: x86/mm: a per-cpu entry area leak was identified through the init_cea_offsets func |
| CVE-2023-33952 | 6.7 MEDIUM | Kernel: vmwgfx: double free within the handling of vmw_buffer_object objects |
| CVE-2023-33951 | 6.7 MEDIUM | Kernel: vmwgfx: race condition leading to information disclosure vulnerability |
| CVE-2023-3750 | 6.5 MEDIUM | Libvirt: improper locking in virstoragepoolobjlistsearch may lead to denial of service |
| CVE-2023-3745 | 5.5 MEDIUM | Imagemagick: heap-buffer-overflow in pushcharpixel() in quantum-private.h |
| CVE-2023-3384 | 5.4 MEDIUM | Quay: stored cross site scripting |
No comments yet