"Heap-based buffer overflow in the process_tx_desc function in the e1000 emulation (hw/e1000.c) [...] allows guest OS users to cause a denial of service (QEMU crash) and possibly execute arbitrary code via crafted legacy mode packets."
"Heap-based buffer overflow in the process_tx_desc function in the e1000 emulation (hw/e1000.c) [...] allows guest OS users to cause a denial of service (QEMU crash) and possibly execute arbitrary code via crafted legacy mode packets."