CVE-2015-7549

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
30/10/2017
Last modified:
20/04/2025

Description

The MSI-X MMIO support in hw/pci/msix.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (NULL pointer dereference and QEMU process crash) by leveraging failure to define the .write method.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:qemu:qemu:*:r1:*:*:*:*:*:* 2.5.0 (excluding)