CVE-2014-8106

MEDIUM
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

Heap-based buffer overflow in the Cirrus VGA emulator (hw/display/cirrus_vga.c) in QEMU before 2.2.0 allows local guest users to execute arbitrary code via vectors related to blit regions. NOTE: this vulnerability exists because an incomplete fix for CVE-2007-1320.

References

http://git.qemu.org/?p=qemu.git;a=commit;h=bf25983345ca44aec3dd92c57142be45452bd38a

http://git.qemu.org/?p=qemu.git;a=commit;h=d3532a0db02296e687711b8cdc7791924efccea0

http://lists.fedoraproject.org/pipermail/package-announce/2015-April/154656.html

http://lists.gnu.org/archive/html/qemu-devel/2014-12/msg00508.html

http://rhn.redhat.com/errata/RHSA-2015-0349.html

http://rhn.redhat.com/errata/RHSA-2015-0624.html

http://rhn.redhat.com/errata/RHSA-2015-0643.html

http://rhn.redhat.com/errata/RHSA-2015-0795.html

http://rhn.redhat.com/errata/RHSA-2015-0867.html

http://rhn.redhat.com/errata/RHSA-2015-0868.html

http://rhn.redhat.com/errata/RHSA-2015-0891.html

http://secunia.com/advisories/60364

http://support.citrix.com/article/CTX200892

http://www.debian.org/security/2014/dsa-3087

http://www.debian.org/security/2014/dsa-3088

http://www.openwall.com/lists/oss-security/2014/12/04/8

http://www.securityfocus.com/bid/71477

https://exchange.xforce.ibmcloud.com/vulnerabilities/99126

Details

Source: MITRE

Published: 2014-12-08

Updated: 2017-09-08

Type: CWE-119

Risk Information

CVSS v2

Base Score: 4.6

Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 3.9

Severity: MEDIUM

Tenable Plugins

View all (28 total)

IDNameProductFamilySeverity
99977OracleVM 3.2 : xen (OVMSA-2017-0096)NessusOracleVM Local Security Checks
critical
99976OracleVM 3.3 : xen (OVMSA-2017-0095)NessusOracleVM Local Security Checks
critical
97828SUSE SLES11 Security Update : xen (SUSE-SU-2017:0718-1)NessusSuSE Local Security Checks
critical
97657SUSE SLES11 Security Update : xen (SUSE-SU-2017:0647-1)NessusSuSE Local Security Checks
critical
97467SUSE SLES12 Security Update : xen (SUSE-SU-2017:0582-1)NessusSuSE Local Security Checks
critical
88770F5 Networks BIG-IP : Multiple QEMU vulnerabilities (K63519101)NessusF5 Networks Local Security Checks
critical
83686SUSE SLED12 / SLES12 Security Update : qemu (SUSE-SU-2015:0349-1)NessusSuSE Local Security Checks
high
83163Citrix XenServer Multiple Vulnerabilities (CTX200892)NessusMisc.
medium
83048RHEL 6 : qemu-kvm-rhev (RHSA-2015:0868)NessusRed Hat Local Security Checks
medium
83000CentOS 6 : qemu-kvm (CESA-2015:0867)NessusCentOS Local Security Checks
medium
82989Scientific Linux Security Update : qemu-kvm on SL6.x i386/x86_64 (20150421)NessusScientific Linux Local Security Checks
medium
82986RHEL 6 : qemu-kvm (RHSA-2015:0867)NessusRed Hat Local Security Checks
medium
82982Oracle Linux 6 : qemu-kvm (ELSA-2015-0867)NessusOracle Linux Local Security Checks
medium
82751Fedora 21 : qemu-2.1.3-5.fc21 (2015-5482)NessusFedora Local Security Checks
high
82260Scientific Linux Security Update : qemu-kvm on SL7.x x86_64 (20150305)NessusScientific Linux Local Security Checks
high
81944Mandriva Linux Security Advisory : qemu (MDVSA-2015:061)NessusMandriva Local Security Checks
high
81891CentOS 7 : qemu-kvm (CESA-2015:0349)NessusCentOS Local Security Checks
high
81803Oracle Linux 7 : qemu-kvm (ELSA-2015-0349)NessusOracle Linux Local Security Checks
high
81661RHEL 7 : qemu-kvm-rhev (RHSA-2015:0624)NessusRed Hat Local Security Checks
high
81632RHEL 7 : qemu-kvm (RHSA-2015:0349)NessusRed Hat Local Security Checks
high
81481SuSE 11.3 Security Update : kvm and libvirt (SAT Patch Number 10222)NessusSuSE Local Security Checks
high
81480SuSE 11.3 Security Update : kvm and libvirt (SAT Patch Number 10222)NessusSuSE Local Security Checks
high
81393Fedora 20 : qemu-1.6.2-13.fc20 (2015-1886)NessusFedora Local Security Checks
medium
80242GLSA-201412-37 : QEMU: Multiple VulnerabilitiesNessusGentoo Local Security Checks
high
80026Ubuntu 10.04 LTS / 12.04 LTS / 14.04 LTS / 14.10 : qemu, qemu-kvm vulnerabilities (USN-2439-1)NessusUbuntu Local Security Checks
high
79994Mandriva Linux Security Advisory : qemu (MDVSA-2014:249)NessusMandriva Local Security Checks
high
79729Debian DSA-3088-1 : qemu-kvm - security updateNessusDebian Local Security Checks
medium
79728Debian DSA-3087-1 : qemu - security updateNessusDebian Local Security Checks
medium