[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2018-7550":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":29,"aliases":30,"duplicate_of":9,"upstream":31,"downstream":32,"duplicates":77,"related":78,"reserved_at":9,"published_at":88,"modified_at":89,"state":90,"summary":91,"references_raw":100,"kevs":152,"epss":153,"epss_history":156,"metrics":423,"affected":434},"CVE-2018-7550","The load_multiboot function in hw/i386/multiboot.c in Quick Emulator (aka QEMU) allows local guest OS users to execute arbitrary code on the QEMU host via a mh_load_end_addr value greater than mh_bss_end_addr, which triggers an out-of-bounds read or write memory access.",null,[11,23],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-125","Out-of-bounds Read","The product reads data past the end, or before the beginning, of the intended buffer.","weakness","Draft","Base",[19],{"id":20,"name":21,"techniques":22},"CAPEC-540","Overread Buffers",[],{"_key":24,"id":24,"name":25,"description":26,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":27,"capec":28},"CWE-787","Out-of-bounds Write","The product writes data past the end, or before the beginning, of the intended buffer.","High",[],[],[],[],[33,35,37,39,41,43,45,47,49,51,53,55,57,59,61,63,65,67,69,71,73,75],{"_key":34},"RHSA-2018:1369",{"_key":36},"RHSA-2018:2462",{"_key":38},"SUSE-SU-2018:0762-1",{"_key":40},"SUSE-SU-2018:0831-1",{"_key":42},"SUSE-SU-2018:1077-1",{"_key":44},"SUSE-SU-2018:1177-1",{"_key":46},"SUSE-SU-2018:1181-1",{"_key":48},"SUSE-SU-2018:1202-1",{"_key":50},"SUSE-SU-2018:1203-1",{"_key":52},"SUSE-SU-2018:1308-1",{"_key":54},"SUSE-SU-2018:2340-1",{"_key":56},"UBUNTU-CVE-2018-7550",{"_key":58},"USN-3649-1",{"_key":60},"DLA-1350-1",{"_key":62},"DLA-1351-1",{"_key":64},"DLA-1497-1",{"_key":66},"DSA-4213-1",{"_key":68},"DEBIAN-CVE-2018-7550",{"_key":70},"RHSA-2018:1643",{"_key":72},"RHSA-2018:1644",{"_key":74},"RHSA-2018:1645",{"_key":76},"RHSA-2018:1646",[],[79,80,81,82,83,84,85,86,87],{"_key":38},{"_key":40},{"_key":42},{"_key":44},{"_key":46},{"_key":48},{"_key":50},{"_key":52},{"_key":54},"2018-03-01T00:00:00.000Z","2024-08-05T06:31:04.536Z","Modified",{"cisa_kev":92,"cisa_ransomware":92,"cisa_vendor":9,"epss_severity":93,"epss_score":94,"severity":95,"severity_score":96,"severity_version":97,"severity_source":98,"severity_vector":99,"severity_status":90},false,"low",0.00084,"high",8.8,"v3.1","nvd","CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H",[101,108,114,118,122,126,130,134,139,144,148],{"url":102,"sources":103,"tags":105},"https://access.redhat.com/errata/RHSA-2018:1369",[104,98],"cve.org",[106,107],"Vendor Advisory","Third Party Advisory",{"url":109,"sources":110,"tags":111},"https://lists.gnu.org/archive/html/qemu-devel/2018-02/msg06890.html",[104,98],[112,113],"Mailing List","Patch",{"url":115,"sources":116,"tags":117},"https://lists.debian.org/debian-lts-announce/2018/04/msg00016.html",[104,98],[112,107],{"url":119,"sources":120,"tags":121},"https://usn.ubuntu.com/3649-1/",[104,98],[106,107],{"url":123,"sources":124,"tags":125},"https://lists.debian.org/debian-lts-announce/2018/09/msg00007.html",[104,98],[112,107],{"url":127,"sources":128,"tags":129},"https://www.debian.org/security/2018/dsa-4213",[104,98],[106,107],{"url":131,"sources":132,"tags":133},"https://lists.debian.org/debian-lts-announce/2018/04/msg00015.html",[104,98],[112,107],{"url":135,"sources":136,"tags":137},"http://www.securityfocus.com/bid/103181",[104,98],[138,107],"VDB Entry",{"url":140,"sources":141,"tags":142},"https://bugzilla.redhat.com/show_bug.cgi?id=1549798",[104,98],[143,106],"Issue Tracking",{"url":145,"sources":146,"tags":147},"https://access.redhat.com/errata/RHSA-2018:2462",[104,98],[106,107],{"url":149,"sources":150,"tags":151},"https://github.com/orangecertcc/security-research/security/advisories/GHSA-f49v-45qp-cv53",[104,98],[],[],{"date":154,"score":94,"percentile":155},"2026-06-03",0.24436,[157,161,164,167,170,173,176,179,182,185,187,190,193,196,199,203,206,209,212,214,217,220,223,226,228,231,234,237,240,244,247,250,253,255,258,261,264,267,270,273,276,279,282,285,288,291,294,297,300,303,306,309,311,314,317,321,324,327,330,333,336,339,342,344,347,350,353,356,359,362,365,368,371,374,377,380,382,385,388,391,394,396,399,402,405,408,411,414,417,420],{"date":158,"score":159,"percentile":160},"2025-11-04",0.00094,0.27076,{"date":162,"score":159,"percentile":163},"2025-11-05",0.27061,{"date":165,"score":159,"percentile":166},"2025-11-06",0.27073,{"date":168,"score":159,"percentile":169},"2025-11-07",0.27072,{"date":171,"score":159,"percentile":172},"2025-11-08",0.27067,{"date":174,"score":159,"percentile":175},"2025-11-09",0.27024,{"date":177,"score":159,"percentile":178},"2025-11-10",0.26989,{"date":180,"score":159,"percentile":181},"2025-11-11",0.27012,{"date":183,"score":159,"percentile":184},"2025-11-12",0.27055,{"date":186,"score":159,"percentile":163},"2025-11-13",{"date":188,"score":159,"percentile":189},"2025-11-14",0.27048,{"date":191,"score":159,"percentile":192},"2025-11-15",0.27036,{"date":194,"score":159,"percentile":195},"2025-11-16",0.26992,{"date":197,"score":159,"percentile":198},"2025-11-17",0.26959,{"date":200,"score":201,"percentile":202},"2025-11-18",0.001,0.23791,{"date":204,"score":201,"percentile":205},"2025-11-19",0.23813,{"date":207,"score":201,"percentile":208},"2025-11-20",0.23823,{"date":210,"score":159,"percentile":211},"2025-11-21",0.2696,{"date":213,"score":159,"percentile":211},"2025-11-22",{"date":215,"score":159,"percentile":216},"2025-11-23",0.26916,{"date":218,"score":159,"percentile":219},"2025-11-24",0.26885,{"date":221,"score":159,"percentile":222},"2025-11-25",0.26876,{"date":224,"score":159,"percentile":225},"2025-11-26",0.26867,{"date":227,"score":159,"percentile":222},"2025-11-27",{"date":229,"score":159,"percentile":230},"2025-11-28",0.26846,{"date":232,"score":159,"percentile":233},"2025-11-29",0.26829,{"date":235,"score":159,"percentile":236},"2025-11-30",0.26803,{"date":238,"score":159,"percentile":239},"2025-12-01",0.26858,{"date":241,"score":242,"percentile":243},"2025-12-02",0.00101,0.28594,{"date":245,"score":242,"percentile":246},"2025-12-03",0.286,{"date":248,"score":242,"percentile":249},"2025-12-04",0.28528,{"date":251,"score":242,"percentile":252},"2025-12-05",0.28565,{"date":254,"score":242,"percentile":252},"2025-12-06",{"date":256,"score":242,"percentile":257},"2025-12-07",0.28536,{"date":259,"score":242,"percentile":260},"2025-12-08",0.28548,{"date":262,"score":242,"percentile":263},"2025-12-09",0.28605,{"date":265,"score":242,"percentile":266},"2025-12-10",0.28677,{"date":268,"score":242,"percentile":269},"2025-12-11",0.28706,{"date":271,"score":242,"percentile":272},"2025-12-12",0.28725,{"date":274,"score":242,"percentile":275},"2025-12-13",0.28721,{"date":277,"score":242,"percentile":278},"2025-12-14",0.28687,{"date":280,"score":242,"percentile":281},"2025-12-15",0.28653,{"date":283,"score":242,"percentile":284},"2025-12-16",0.28663,{"date":286,"score":242,"percentile":287},"2025-12-17",0.28723,{"date":289,"score":242,"percentile":290},"2025-12-18",0.28777,{"date":292,"score":242,"percentile":293},"2025-12-19",0.28791,{"date":295,"score":242,"percentile":296},"2025-12-20",0.28755,{"date":298,"score":242,"percentile":299},"2025-12-21",0.28709,{"date":301,"score":242,"percentile":302},"2025-12-22",0.28672,{"date":304,"score":242,"percentile":305},"2025-12-23",0.28641,{"date":307,"score":242,"percentile":308},"2025-12-24",0.2865,{"date":310,"score":242,"percentile":287},"2025-12-25",{"date":312,"score":242,"percentile":313},"2025-12-26",0.28716,{"date":315,"score":242,"percentile":316},"2025-12-27",0.28711,{"date":318,"score":319,"percentile":320},"2025-12-28",0.0011,0.30007,{"date":322,"score":319,"percentile":323},"2025-12-29",0.2998,{"date":325,"score":319,"percentile":326},"2025-12-30",0.29981,{"date":328,"score":319,"percentile":329},"2025-12-31",0.30032,{"date":331,"score":319,"percentile":332},"2026-01-01",0.30158,{"date":334,"score":319,"percentile":335},"2026-01-02",0.30152,{"date":337,"score":319,"percentile":338},"2026-01-03",0.30136,{"date":340,"score":319,"percentile":341},"2026-01-04",0.30013,{"date":343,"score":319,"percentile":320},"2026-01-05",{"date":345,"score":94,"percentile":346},"2026-01-06",0.24836,{"date":348,"score":94,"percentile":349},"2026-01-07",0.24864,{"date":351,"score":94,"percentile":352},"2026-01-08",0.24909,{"date":354,"score":94,"percentile":355},"2026-01-09",0.24886,{"date":357,"score":94,"percentile":358},"2026-01-10",0.24856,{"date":360,"score":94,"percentile":361},"2026-01-11",0.24833,{"date":363,"score":94,"percentile":364},"2026-01-12",0.24797,{"date":366,"score":94,"percentile":367},"2026-01-13",0.24775,{"date":369,"score":94,"percentile":370},"2026-01-14",0.24831,{"date":372,"score":94,"percentile":373},"2026-01-15",0.24824,{"date":375,"score":94,"percentile":376},"2026-01-16",0.24854,{"date":378,"score":94,"percentile":379},"2026-01-17",0.24858,{"date":381,"score":94,"percentile":370},"2026-01-18",{"date":383,"score":94,"percentile":384},"2026-01-19",0.24787,{"date":386,"score":94,"percentile":387},"2026-01-20",0.24769,{"date":389,"score":94,"percentile":390},"2026-01-21",0.24718,{"date":392,"score":94,"percentile":393},"2026-01-22",0.24703,{"date":395,"score":94,"percentile":384},"2026-01-23",{"date":397,"score":94,"percentile":398},"2026-01-24",0.24793,{"date":400,"score":94,"percentile":401},"2026-01-25",0.24708,{"date":403,"score":94,"percentile":404},"2026-01-26",0.24611,{"date":406,"score":94,"percentile":407},"2026-01-27",0.24599,{"date":409,"score":94,"percentile":410},"2026-01-28",0.24596,{"date":412,"score":94,"percentile":413},"2026-01-29",0.24554,{"date":415,"score":94,"percentile":416},"2026-01-30",0.24539,{"date":418,"score":94,"percentile":419},"2026-01-31",0.24533,{"date":421,"score":94,"percentile":422},"2026-02-01",0.24581,[424],{"source":98,"cvss_v2_0":425,"cvss_v3_0":9,"cvss_v3_1":430,"cvss_v4_0":9},{"baseScore":426,"baseSeverity":9,"vectorString":427,"impactScore":428,"exploitabilityScore":429},4.6,"AV:L/AC:L/Au:N/C:P/I:P/A:P",6.4,3.9,{"baseScore":96,"baseSeverity":431,"vectorString":99,"impactScore":432,"exploitabilityScore":433},"HIGH",10,5.1,[435,450,461,470,476,481,489,497,503],{"ecosystem":9,"name":436,"vendor":437,"product":438,"cpe_part":439,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":440},"ubuntu linux","canonical","ubuntu_linux","o",[441,444,446,448],{"version":442,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"14.04","cpe",{"version":445,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"16.04",{"version":447,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"17.10",{"version":449,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"18.04",{"ecosystem":9,"name":451,"vendor":452,"product":453,"cpe_part":439,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":454},"debian linux","debian","debian_linux",[455,457,459],{"version":456,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.0",{"version":458,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"8.0",{"version":460,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"9.0",{"ecosystem":9,"name":462,"vendor":462,"product":462,"cpe_part":463,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":464},"qemu","a",[465],{"version":466,"is_range":467,"range_type":443,"version_start":9,"version_start_type":9,"version_end":468,"version_end_type":469,"fixed_in":9},"lte2.11.1",true,"2.11.1","including",{"ecosystem":9,"name":471,"vendor":472,"product":473,"cpe_part":439,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":474},"enterprise linux desktop","redhat","enterprise_linux_desktop",[475],{"version":456,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":477,"vendor":472,"product":478,"cpe_part":439,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":479},"enterprise linux server","enterprise_linux_server",[480],{"version":456,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":482,"vendor":472,"product":483,"cpe_part":439,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":484},"enterprise linux server aus","enterprise_linux_server_aus",[485,487],{"version":486,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.6",{"version":488,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.7",{"ecosystem":9,"name":490,"vendor":472,"product":491,"cpe_part":439,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":492},"enterprise linux server eus","enterprise_linux_server_eus",[493,495,496],{"version":494,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},"7.5",{"version":486,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":488,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":498,"vendor":472,"product":499,"cpe_part":439,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":500},"enterprise linux server tus","enterprise_linux_server_tus",[501,502],{"version":486,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"version":488,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9},{"ecosystem":9,"name":504,"vendor":472,"product":505,"cpe_part":439,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":506},"enterprise linux workstation","enterprise_linux_workstation",[507],{"version":456,"is_range":92,"range_type":443,"version_start":9,"version_start_type":9,"version_end":9,"version_end_type":9,"fixed_in":9}]