Back to search
CVE-2018-7550
Published: Mar 1, 2018
Modified: Aug 5, 2024
PUBLISHED
Description
The load_multiboot function in hw/i386/multiboot.c in Quick Emulator (aka QEMU) allows local guest OS users to execute arbitrary code on the QEMU host via a mh_load_end_addr value greater than mh_bss_end_addr, which triggers an out-of-bounds read or write memory access.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
RHSA-2018:1369
vendor-advisory
USN-3649-1
vendor-advisory
DSA-4213
vendor-advisory
103181
vdb-entry
RHSA-2018:2462
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now