CVE-2014-3689

The vmware-vga driver (hw/display/vmware_vga.c) in QEMU allows local guest users to write to qemu memory locations and gain privileges via unspecified parameters related to rectangle handling.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.2 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 25%
Affected Products (NVD)
VendorProductVersion
qemuqemu
𝑥
≤ 2.1.3
debiandebian_linux
7.0
canonicalubuntu_linux
10.04
canonicalubuntu_linux
12.04
canonicalubuntu_linux
14.04
canonicalubuntu_linux
14.10
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
qemu
bookworm
1:7.2+dfsg-7+deb12u7
fixed
bullseye
1:5.2+dfsg-11+deb11u3
fixed
bullseye (security)
1:5.2+dfsg-11+deb11u2
fixed
sid
1:9.1.1+ds-2
fixed
trixie
1:9.1.1+ds-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
qemu
lucid
dne
precise
dne
trusty
Fixed 2.0.0+dfsg-2ubuntu1.7
released
utopic
Fixed 2.1+dfsg-4ubuntu6.1
released
qemu-kvm
lucid
Fixed 0.12.3+noroms-0ubuntu9.25
released
precise
Fixed 1.0+noroms-0ubuntu14.19
released
trusty
dne
utopic
dne
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
qemu
suse enterprise sap 12
2.0.2-48.19.1
fixed
suse enterprise server 12
2.0.2-48.19.1
fixed
qemu-block-curl
suse enterprise sap 12
2.0.2-48.19.1
fixed
suse enterprise server 12
2.0.2-48.19.1
fixed
qemu-block-rbd
suse enterprise sap 12
2.0.2-48.19.1
fixed
suse enterprise server 12
2.0.2-48.19.1
fixed
qemu-guest-agent
suse enterprise sap 12
2.0.2-48.19.1
fixed
suse enterprise server 12
2.0.2-48.19.1
fixed
qemu-ipxe
suse enterprise sap 12
1.0.0-48.19.1
fixed
suse enterprise server 12
1.0.0-48.19.1
fixed
qemu-kvm
suse enterprise sap 12
2.0.2-48.19.1
fixed
suse enterprise server 12
2.0.2-48.19.1
fixed
qemu-lang
suse enterprise sap 12
2.0.2-48.19.1
fixed
suse enterprise server 12
2.0.2-48.19.1
fixed
qemu-ppc
suse enterprise sap 12
2.0.2-48.19.1
fixed
suse enterprise server 12
2.0.2-48.19.1
fixed
qemu-s390
suse enterprise sap 12
2.0.2-48.19.1
fixed
suse enterprise server 12
2.0.2-48.19.1
fixed
qemu-seabios
suse enterprise sap 12
1.7.4-48.19.1
fixed
suse enterprise server 12
1.7.4-48.19.1
fixed
qemu-sgabios-8
suse enterprise sap 12
48.19.1
fixed
suse enterprise server 12
48.19.1
fixed
qemu-tools
suse enterprise sap 12
2.0.2-48.19.1
fixed
suse enterprise server 12
2.0.2-48.19.1
fixed
qemu-vgabios
suse enterprise sap 12
1.7.4-48.19.1
fixed
suse enterprise server 12
1.7.4-48.19.1
fixed
qemu-x86
suse enterprise sap 12
2.0.2-48.19.1
fixed
suse enterprise server 12
2.0.2-48.19.1
fixed