5.5
CVSSv3

CVE-2017-10806

Published: 02/08/2017 Updated: 10/11/2020
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Stack-based buffer overflow in hw/usb/redirect.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (QEMU process crash) via vectors related to logging debug messages.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

qemu qemu

debian debian linux 8.0

debian debian linux 9.0

Vendor Advisories

Several security issues were fixed in QEMU ...
USN-3414-1 introduced a regression in QEMU ...
Multiple vulnerabilities were found in qemu, a fast processor emulator: CVE-2017-9524 Denial of service in qemu-nbd server CVE-2017-10806 Buffer overflow in USB redirector CVE-2017-11334 Out-of-band memory access in DMA operations CVE-2017-11434 Out-of-band memory access in SLIRP/DHCP For the stable distribution (stretch), these p ...
Debian Bug report logs - #864219 qemu: CVE-2017-9375: usb: xhci infinite recursive call via xhci_kick_ep Package: src:qemu; Maintainer for src:qemu is Debian QEMU Team <pkg-qemu-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Mon, 5 Jun 2017 11:48:01 UTC Severity: serious ...
Debian Bug report logs - #867751 qemu: CVE-2017-10806: usb-redirect: stack buffer overflow in debug logging Package: src:qemu; Maintainer for src:qemu is Debian QEMU Team <pkg-qemu-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sun, 9 Jul 2017 08:18:10 UTC Severity: minor ...
Debian Bug report logs - #865754 qemu: CVE-2017-9503: megasas: null pointer dereference while processing megasas command Package: src:qemu; Maintainer for src:qemu is Debian QEMU Team <pkg-qemu-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 24 Jun 2017 14:09:02 UTC Se ...
Debian Bug report logs - #869171 qemu: CVE-2017-11434: slirp: out-of-bounds read while parsing dhcp options Package: qemu; Maintainer for qemu is Debian QEMU Team <pkg-qemu-devel@listsaliothdebianorg>; Source for qemu is src:qemu (PTS, buildd, popcon) Reported by: Guido Günther <agx@sigxcpuorg> Date: Fri, 21 Jul ...
Debian Bug report logs - #865755 qemu: CVE-2017-9524: nbd: segmentation fault due to client non-negotiation Package: src:qemu; Maintainer for src:qemu is Debian QEMU Team <pkg-qemu-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 24 Jun 2017 14:21:01 UTC Severity: serio ...
Debian Bug report logs - #869173 qemu: CVE-2017-11334: exec: oob access during dma operation Package: qemu; Maintainer for qemu is Debian QEMU Team <pkg-qemu-devel@listsaliothdebianorg>; Source for qemu is src:qemu (PTS, buildd, popcon) Reported by: Guido Günther <agx@sigxcpuorg> Date: Fri, 21 Jul 2017 09:33:02 ...
Stack-based buffer overflow in hw/usb/redirectc in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (QEMU process crash) via vectors related to logging debug messages ...