CVE-2013-4536

An user able to alter the savevm data (either on the disk or over the wire during migration) could use this flaw to to corrupt QEMU process memory on the (destination) host, which could potentially result in arbitrary code execution on the host with the privileges of the QEMU process.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 13%
Affected Products (NVD)
VendorProductVersion
qemuqemu
𝑥
< 1.5.3
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
qemu
bookworm
1:7.2+dfsg-7+deb12u7
fixed
bullseye
1:5.2+dfsg-11+deb11u3
fixed
bullseye (security)
1:5.2+dfsg-11+deb11u2
fixed
sid
1:9.1.1+ds-2
fixed
squeeze
no-dsa
trixie
1:9.1.1+ds-2
fixed
wheezy
no-dsa
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
qemu
lucid
dne
precise
dne
quantal
dne
saucy
ignored
trusty
Fixed 2.0.0+dfsg-2ubuntu1.3
released
qemu-kvm
lucid
not-affected
precise
Fixed 1.0+noroms-0ubuntu14.17
released
quantal
ignored
saucy
dne
trusty
dne
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
qemu
suse enterprise sap 15
2.11.1-7.5
fixed
suse enterprise server 15
2.11.1-7.5
fixed
qemu-block-curl
suse enterprise sap 15
2.11.1-7.5
fixed
suse enterprise server 15
2.11.1-7.5
fixed
qemu-block-iscsi
suse enterprise sap 15
2.11.1-7.5
fixed
suse enterprise server 15
2.11.1-7.5
fixed
qemu-block-rbd
suse enterprise sap 15
2.11.1-7.5
fixed
suse enterprise server 15
2.11.1-7.5
fixed
qemu-block-ssh
suse enterprise sap 15
2.11.1-7.5
fixed
suse enterprise server 15
2.11.1-7.5
fixed
qemu-guest-agent
suse enterprise sap 15
2.11.1-7.5
fixed
suse enterprise server 15
2.11.1-7.5
fixed
qemu-ipxe
suse enterprise sap 15
1.0.0-7.5
fixed
suse enterprise server 15
1.0.0-7.5
fixed
qemu-kvm
suse enterprise sap 15
2.11.1-7.5
fixed
suse enterprise server 15
2.11.1-7.5
fixed
qemu-lang
suse enterprise sap 15
2.11.1-7.5
fixed
suse enterprise server 15
2.11.1-7.5
fixed
qemu-seabios
suse enterprise sap 15
1.11.0-7.5
fixed
suse enterprise server 15
1.11.0-7.5
fixed
qemu-sgabios-8
suse enterprise sap 15
7.5
fixed
suse enterprise server 15
7.5
fixed
qemu-vgabios
suse enterprise sap 15
1.11.0-7.5
fixed
suse enterprise server 15
1.11.0-7.5
fixed
qemu-x86
suse enterprise sap 15
2.11.1-7.5
fixed
suse enterprise server 15
2.11.1-7.5
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
libcacard
RHEL 7
10:1.5.3-60.el7_0.5
fixed
libcacard-devel
RHEL 7
10:1.5.3-60.el7_0.5
fixed
libcacard-tools
RHEL 7
10:1.5.3-60.el7_0.5
fixed
qemu-guest-agent
RHEL 6
2:0.12.1.2-2.415.el6_5.10
fixed
RHEL 7
10:1.5.3-60.el7_0.5
fixed
qemu-img
RHEL 6
2:0.12.1.2-2.415.el6_5.10
fixed
RHEL 7
10:1.5.3-60.el7_0.5
fixed
qemu-kvm
RHEL 6
2:0.12.1.2-2.415.el6_5.10
fixed
RHEL 7
10:1.5.3-60.el7_0.5
fixed
qemu-kvm-common
RHEL 7
10:1.5.3-60.el7_0.5
fixed
qemu-kvm-tools
RHEL 6
2:0.12.1.2-2.415.el6_5.10
fixed
RHEL 7
10:1.5.3-60.el7_0.5
fixed