Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11620
HistoryJan 15, 2019 - 9:05 a.m.

Arbitrary Code Execution

2019-01-1509:05:03
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.001 Low

EPSS

Percentile

41.5%

QEMU is vulnerable to arbitray code execution. A local guest user is able to write arbitrary data outside of VRAM-allocated buffer boundaries in the host’s application address space due to insufficient checks in the Cirrus blit region, leading to execution of arbitrary code.

References