CVE Database
/

CVE-2014-0223

Back to search

CVE-2014-0223

Published: Nov 4, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

Integer overflow in the qcow_open function in block/qcow.c in QEMU before 1.7.2 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a large image size, which triggers a buffer overflow or out-of-bounds read.

VendorProductVersions

n/a

n/a

affected
n/a

References

67391
vdb-entry
x_refsource_BID
SUSE-SU-2015:0929
vendor-advisory
x_refsource_SUSE
DSA-3044
vendor-advisory
x_refsource_DEBIAN
FEDORA-2014-6970
vendor-advisory
x_refsource_FEDORA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now