VYPR

QXL display device emulation

by QEMU

CVEs (1)

  • CVE-2021-4207HigApr 29, 2022
    risk 0.53cvss 8.2epss 0.00

    A flaw was found in the QXL display device emulation in QEMU. A double fetch of guest controlled values `cursor->header.width` and `cursor->header.height` can lead to the allocation of a small cursor object followed by a subsequent heap-based buffer overflow. A malicious…