« List of all CVEs

CVE-2013-4541

Published: 11/4/2014 Last updated: 8/6/2024 Reserved: 6/12/2013

The usb_device_post_load function in hw/usb/bus.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a crafted savevm image, related to a negative setup_len or setup_index value.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Opam packages affected (2)

conf-qemu-img nbd-tool

Products affected (1)

Product Vendor Version
n/a n/a < d3065cc56221d1a5eda237e94eaf2a627b88ab79

References (10)