FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2007-6227

This CVE name corresponds to:

Entered Topic
2007-12-12 qemu -- Translation Block Local Denial of Service Vulnerability

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2007-6227
Phase Assigned(20071204)

Description

QEMU 0.9.0 allows local users of a Windows XP SP2 guest operating system to overwrite the TranslationBlock (code_gen_buffer) buffer, and probably have unspecified other impacts related to an "overflow," via certain Windows executable programs, as demonstrated by qemu-dos.com.

References

Source Reference
BUGTRAQ 20071130 QEMU code_gen_buffer overflow POC
MANDRIVA MDVSA-2008:162
BID 26666
SECUNIA 29129
XF qemu-translationblock-dos(38806)