Lucene search

K
cvelistRedhatCVELIST:CVE-2013-4536
HistoryMay 28, 2021 - 4:58 p.m.

CVE-2013-4536

2021-05-2816:58:49
CWE-269
redhat
www.cve.org
1

8.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.6%

An user able to alter the savevm data (either on the disk or over the wire during migration) could use this flaw to to corrupt QEMU process memory on the (destination) host, which could potentially result in arbitrary code execution on the host with the privileges of the QEMU process.

CNA Affected

[
  {
    "product": "qemu",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "qemu-kvm 1.5.3"
      }
    ]
  }
]

8.2 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

12.6%