Buffer overflow in the ccid_card_vscard_handle_message function in hw/ccid-card-passthru.c in QEMU before 0.15.2 and 1.x before 1.0-rc4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted VSC_ATR message.
2014-02-26T15:55:08.297
2025-04-12T10:46:40.837
Deferred
CVSSv2: 6.8 (MEDIUM)
AV:A/AC:H/Au:N/C:C/I:C/A:C
3.2
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | redhat | enterprise_linux | 6.0 | Yes |
Operating System | redhat | enterprise_linux_server_supplementary | 6.1.z | Yes |
Application | qemu | qemu | ≤ 0.15.1 | Yes |
Application | qemu | qemu | 0.15.0 | Yes |
Application | qemu | qemu | 0.15.0 | Yes |
Application | qemu | qemu | 0.15.0 | Yes |
Application | qemu | qemu | 1.0 | Yes |
Application | qemu | qemu | 1.0 | Yes |
Application | qemu | qemu | 1.0 | Yes |
Application | qemu | qemu | 1.0 | Yes |