CVE-2013-4541

EPSS 1.7%
發布日:2014/11/4修改日:2026/4/28

描述

The usb_device_post_load function in hw/usb/bus.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a crafted savevm image, related to a negative setup_len or setup_index value.

受影響套件(1)

參考連結(1)