296,746
Total vulnerabilities in the database
Buffer overflow in the ccid_card_vscard_handle_message function in hw/ccid-card-passthru.c in QEMU before 0.15.2 and 1.x before 1.0-rc4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted VSC_ATR message.
| Software | From | Fixed in | 
|---|---|---|
| redhat / enterprise_linux_server_supplementary | 6.1.z | 6.1.z.x | 
| redhat / enterprise_linux | 6.0 | 6.0.x | 
| qemu / qemu | 1.0-rc1 | 1.0-rc1.x | 
| qemu / qemu | 1.0-rc2 | 1.0-rc2.x | 
| qemu / qemu | 1.0 | 1.0.x | 
| qemu / qemu | 0.15.0 | 0.15.0.x | 
| qemu / qemu | 1.0-rc3 | 1.0-rc3.x | 
| qemu / qemu | 0.15.0-rc1 | 0.15.0-rc1.x | 
| qemu / qemu | - | 0.15.1.x | 
| qemu / qemu | 0.15.0-rc2 | 0.15.0-rc2.x |