CVE-2013-4544: Canonical Ubuntu Linux

Medium severity, CVSS 4.9. EPSS: 0.7% chance of exploitation in the next 30 days.

hw/net/vmxnet3.c in QEMU 2.0.0-rc0, 1.7.1, and earlier allows local guest users to cause a denial of service or possibly execute arbitrary code via vectors related to (1) RX or (2) TX queue numbers or (3) interrupt indices. NOTE: some of these details are obtained from third party information.

Affected products

  • Canonical Ubuntu Linux: version 10.04 only; version 12.04 only; version 12.10 only; version 13.10 only; version 14.04 only
  • Qemu Qemu: up to and including 1.7.1; version 1.0 only; version 1.0.1 only; version 1.1 only; version 1.4.1 only; version 1.4.2 only; …

Published 2014-05-08. Last modified 2026-06-16.