[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-USN-3649-1":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T14:53:31.930Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":11,"aliases":12,"duplicate_of":9,"upstream":13,"downstream":26,"duplicates":27,"related":28,"reserved_at":9,"published_at":32,"modified_at":33,"state":9,"summary":34,"references_raw":36,"kevs":56,"epss":9,"epss_history":57,"metrics":58,"affected":59},"USN-3649-1","qemu vulnerabilities\n\nCyrille Chatras discovered that QEMU incorrectly handled certain PS2 values\nduring migration. An attacker could possibly use this issue to cause QEMU\nto crash, resulting in a denial of service, or possibly execute arbitrary\ncode. This issue only affected Ubuntu 18.04 LTS. (CVE-2017-16845)\n\nCyrille Chatras discovered that QEMU incorrectly handled multiboot. An\nattacker could use this issue to cause QEMU to crash, resulting in a denial\nof service, or possibly execute arbitrary code on the host. In the default\ninstallation, when QEMU is used with libvirt, attackers would be isolated\nby the libvirt AppArmor profile. (CVE-2018-7550)\n\nRoss Lagerwall discovered that QEMU incorrectly handled the Cirrus VGA\ndevice. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service. This issue only\naffected Ubuntu 17.10 and Ubuntu 18.04 LTS. (CVE-2018-7858)\n",null,[],[],[],[14,16,18,20,22,24],{"_key":15},"CVE-2017-16845",{"_key":17},"CVE-2018-7550",{"_key":19},"CVE-2018-7858",{"_key":21},"UBUNTU-CVE-2017-16845",{"_key":23},"UBUNTU-CVE-2018-7550",{"_key":25},"UBUNTU-CVE-2018-7858",[],[],[29,30,31],{"_key":21},{"_key":23},{"_key":25},"2018-05-16T12:03:54.459199Z","2026-02-04T03:01:33.831183Z",{"cisa_kev":35,"cisa_ransomware":35,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":9,"severity_score":9,"severity_version":9,"severity_source":9,"severity_vector":9,"severity_status":9},false,[37,43,48,52],{"url":38,"sources":39,"tags":41},"https://ubuntu.com/security/notices/USN-3649-1",[40],"osv_ubuntu",[42],"Advisory",{"url":44,"sources":45,"tags":46},"https://ubuntu.com/security/CVE-2017-16845",[40],[47],"REPORT",{"url":49,"sources":50,"tags":51},"https://ubuntu.com/security/CVE-2018-7550",[40],[47],{"url":53,"sources":54,"tags":55},"https://ubuntu.com/security/CVE-2018-7858",[40],[47],[],[],[],[60],{"ecosystem":61,"name":62,"vendor":63,"product":62,"cpe_part":9,"purl_type":64,"purl_namespace":63,"purl_name":62,"source":9,"versions":65},"Ubuntu","qemu","ubuntu","deb",[66,72,75],{"version":67,"is_range":68,"range_type":69,"version_start":9,"version_start_type":9,"version_end":70,"version_end_type":71,"fixed_in":9},"lt2_0_0+dfsg_2ubuntu1_41",true,"ecosystem","2.0.0+dfsg-2ubuntu1.41","excluding",{"version":73,"is_range":68,"range_type":69,"version_start":9,"version_start_type":9,"version_end":74,"version_end_type":71,"fixed_in":9},"lt1:2_5+dfsg_5ubuntu10_28","1:2.5+dfsg-5ubuntu10.28",{"version":76,"is_range":68,"range_type":69,"version_start":9,"version_start_type":9,"version_end":77,"version_end_type":71,"fixed_in":9},"lt1:2_11+dfsg_1ubuntu7_1","1:2.11+dfsg-1ubuntu7.1"]