Known vulnerabilities in qemu (Debian package)

Vendor: Debian
Software CPE: cpe:2.3:o:debian:qemu_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 32
Public exploits: 2
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting qemu (Debian package) qemu (Debian package) is affected by 32 known vulnerabilities: 1 high, 17 medium, 14 low Critical High Medium Low

Vulnerabilities (32)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU72306 - Out-of-bounds write
CVE-2021-3638
CWE-787 Medium
No
No
1:5.2+dfsg-11+deb11u1 15.02.2023 SB2023021576
SB2021100524
SB2023010348
and 11 more
#VU63788 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2021-4207
CWE-362 Low
No
No
1:5.2+dfsg-11+deb11u2 30.05.2022 SB2022061333
SB2022062124
SB2022070437
and 9 more
#VU63787 - Integer overflow
CVE-2021-4206
CWE-190 Low
No
No
1:5.2+dfsg-11+deb11u2 30.05.2022 SB2022061333
SB2022062124
SB2022070437
and 9 more
#VU63786 - Improper Resource Shutdown or Release
CVE-2022-26354
CWE-404 Low
No
No
1:5.2+dfsg-11+deb11u2 30.05.2022 SB2022061333
SB2022062124
SB2022070437
and 10 more
#VU63783 - Use After Free
CVE-2022-26353
CWE-416 Low
No
No
1:5.2+dfsg-11+deb11u2 30.05.2022 SB2022061333
SB2022062124
SB2022070445
and 6 more
#VU63779 - Out-of-bounds write
CVE-2021-3713
CWE-787 Medium
No
No
1:5.2+dfsg-11+deb11u1 30.05.2022 SB2021102622
SB2021110322
SB2021110323
and 4 more
#VU63778 - Release of invalid pointer or reference
CVE-2021-3682
CWE-763 Low
No
No
1:5.2+dfsg-11+deb11u1 30.05.2022 SB2022022813
SB2021100524
SB2023041751
and 2 more
#VU61492 - Incorrect Default Permissions
CVE-2022-0358
CWE-276 Low
No
No
1:5.2+dfsg-11+deb11u2 21.03.2022 SB2022032112
SB2022032120
SB2022032121
and 13 more
#VU58813 - Use After Free
CVE-2021-3748
CWE-416 High
No
No
1:5.2+dfsg-11+deb11u1 09.12.2021 SB2021120921
SB2021120922
SB2021102622
and 9 more
#VU53681 - Out-of-bounds write
CVE-2021-3546
CWE-787 Medium
No
No
1:5.2+dfsg-11+deb11u1 31.05.2021 SB2021053119
SB2021063043
SB2021063044
and 3 more
#VU53680 - Exposure of sensitive information to an unauthorized actor
CVE-2021-3545
CWE-200 Low
No
No
1:5.2+dfsg-11+deb11u1 31.05.2021 SB2021053119
SB2021063043
SB2021063044
and 3 more
#VU53679 - Missing release of memory after effective lifetime
CVE-2021-3544
CWE-401 Medium
No
No
1:5.2+dfsg-11+deb11u1 31.05.2021 SB2021053119
SB2021063043
SB2021063044
and 3 more
#VU46318 - Integer overflow
CVE-2020-12829
CWE-190 Low
No
No
1:3.1+dfsg-8+deb10u8 07.09.2020 SB2020090714
SB2020090715
SB2020081923
#VU45985 - Out-of-bounds write
CVE-2020-14364
CWE-787 Medium
Available
No
1:3.1+dfsg-8+deb10u8 24.08.2020 SB2020082410
SB2020090715
SB2020091121
and 35 more
#VU44163 - Reachable Assertion
CVE-2020-16092
CWE-617 Medium
No
No
1:3.1+dfsg-8+deb10u8 11.08.2020 SB2020081102
SB2020090715
SB2020101311
and 9 more
#VU31804 - NULL Pointer Dereference
CVE-2020-13659
CWE-476 Medium
No
No
1:3.1+dfsg-8+deb10u6 24.07.2020 SB2020072412
SB2020072816
SB2020111105
and 4 more
#VU31803 - Out-of-bounds write
CVE-2020-13754
CWE-787 Medium
No
No
1:3.1+dfsg-8+deb10u6, 1:3.1+dfsg-8+deb10u7 24.07.2020 SB2020072412
SB2020111105
SB2021062316
and 8 more
#VU31802 - Out-of-bounds read
CVE-2020-13362
CWE-125 Low
No
No
1:3.1+dfsg-8+deb10u6 24.07.2020 SB2020072412
SB2020072816
SB2020111105
and 4 more
#VU31799 - Stack-based buffer overflow
CVE-2020-15863
CWE-121 Medium
No
No
1:3.1+dfsg-8+deb10u8 24.07.2020 SB2020072412
SB2020090715
SB2020101311
and 1 more
#VU25456 - Memory corruption
CVE-2020-8608
CWE-119 Low
No
No
1:3.1+dfsg-8+deb10u7 19.02.2020 SB2020021912
SB2020033013
SB2020040146
and 24 more


Showing elements 1 - 20 out of 32