← Back

CVE-2013-6399

nvd nist
Published: Nov 4, 2014Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Array index error in the virtio_load function in hw/virtio/virtio.c in QEMU before 1.7.2 allows remote attackers to execute arbitrary code via a crafted savevm image.

Affected (92)

Products: Qemu: Qemu
1 product
Qemu
Configuration A
92 vulnerable
Vulnerable SoftwareAffected Versions
Qemu
Up to 1.7.1
Version 0.1.0
Version 0.1.1
Version 0.1.2
Version 0.1.3
Version 0.1.4
Version 0.1.5
Version 0.1.6
Version 0.10.0
Version 0.10.1
Version 0.10.2
Version 0.10.3
Version 0.10.4
Version 0.10.5
Version 0.10.6
Version 0.11.0-rc0
Version 0.11.0-rc1
Version 0.11.0-rc2
Version 0.11.0
Version 0.11.0 rc0
Version 0.11.0 rc1
Version 0.11.0 rc2
Version 0.11.1
Version 0.12.0
Version 0.12.0 rc1
Version 0.12.0 rc2
Version 0.12.1
Version 0.12.2
Version 0.12.3
Version 0.12.4
Version 0.12.5
Version 0.13.0
Version 0.13.0 rc0
Version 0.13.0 rc1
Version 0.14.0
Version 0.14.0 rc0
Version 0.14.0 rc1
Version 0.14.0 rc2
Version 0.14.1
Version 0.15.0 rc1
Version 0.15.0 rc2
Version 0.15.1
Version 0.15.2
Version 0.2.0
Version 0.3.0
Version 0.4.0
Version 0.4.1
Version 0.4.2
Version 0.4.3
Version 0.5.0
Version 0.5.1
Version 0.5.2
Version 0.5.3
Version 0.5.4
Version 0.5.5
Version 0.6.0
Version 0.6.1
Version 0.7.0
Version 0.7.1
Version 0.7.2
Version 0.8.0
Version 0.8.1
Version 0.8.2
Version 0.9.0
Version 0.9.1-5
Version 0.9.1
Version 1.0.1
Version 1.0
Version 1.0 rc1
Version 1.0 rc2
Version 1.0 rc3
Version 1.0 rc4
Version 1.1
Version 1.1 rc1
Version 1.1 rc2
Version 1.1 rc3
Version 1.1 rc4
Version 1.4.1
Version 1.4.2
Version 1.5.0
Version 1.5.0 rc1
Version 1.5.0 rc2
Version 1.5.0 rc3
Version 1.5.1
Version 1.5.2
Version 1.5.3
Version 1.6.0
Version 1.6.0 rc1
Version 1.6.0 rc2
Version 1.6.0 rc3
Version 1.6.1
Version 1.6.2

References (10)

Timeline

No history available yet.