An user able to alter the savevm data (either on the disk or over the wire during migration) could use this flaw to to corrupt QEMU process memory on the (destination) host, which could potentially result in arbitrary code execution on the host with the privileges of the QEMU process.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2013-4395 | An user able to alter the savevm data (either on the disk or over the wire during migration) could use this flaw to to corrupt QEMU process memory on the (destination) host, which could potentially result in arbitrary code execution on the host with the privileges of the QEMU process. |
Ubuntu USN |
USN-2342-1 | QEMU vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T16:45:14.837Z
Reserved: 2013-06-12T00:00:00
Link: CVE-2013-4536
No data.
Status : Modified
Published: 2021-05-28T17:15:07.350
Modified: 2024-11-21T01:55:47.040
Link: CVE-2013-4536
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN