漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
A heap buffer overflow flaw was found in QEMU's Cirrus CLGD 54xx VGA emulator's VNC display driver support before 2.9; the issue could occur when a VNC client attempted to update its display after a VGA operation is performed by a guest. A privileged user/process inside a guest could use this flaw to crash the QEMU process or, potentially, execute arbitrary code on the host with privileges of the QEMU process.
CVSS Information
N/A
Vulnerability Type
堆缓冲区溢出
Vulnerability Title
QEMU 缓冲区错误漏洞
Vulnerability Description
QEMU(又名Quick Emulator)是法国程序员法布里斯-贝拉(Fabrice Bellard)所研发的一套模拟处理器软件。该软件具有速度快、跨平台等特点。 基于Cirrus CLGD 54xx VGA模拟器支持实现的QEMU 2.9之前版本中存在基于堆的缓冲区溢出漏洞。远程攻击者可利用该漏洞造成QEMU进程崩溃并可能在主机上以QEMU进程的权限执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A