Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2017-7718

20
FAUCET Score

CVE-2017-7718 is a denial-of-service vulnerability affecting QEMU, specifically within the cirrus_vga_rop.h component, impacting Debian and QEMU distributions. This medium-severity vulnerability (CVSS 5.5) allows a local guest OS privileged user to trigger an out-of-bounds read and crash the QEMU process by manipulating VGA data. There is no evidence of active exploitation, publicly available exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
<= 2.8.1.1CPE matchmatch criteria
cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*
2.9.0CPE matchmatch criteria
cpe:2.3:a:qemu:qemu:2.9.0:rc0:*:*:*:*:*:*
8.0CPE matchmatch criteria
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

5.5MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
3.6
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.50%
Probability of exploitation in next 30 days
EPSS Percentile
39.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0050 is in the 92nd percentile among its peer group of 15,938 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (18)

microsoftpatch availablevia msrc
Product: 17459-17084
microsoftpatch availablevia msrc
Product: azl3 qemu 8.2.0-16 on Azure Linux 3.0
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: qemu-kvm-2:0.12.1.2-2.503.el6_9.3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: qemu-kvm-10:1.5.3-126.el7_3.9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 6Fixed in: qemu-kvm-rhev-2:0.12.1.2-2.503.el6_9.3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 7Fixed in: qemu-kvm-rhev-10:2.6.0-28.el7_3.9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7Fixed in: qemu-kvm-rhev-10:2.6.0-28.el7_3.9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for RHEL 7Fixed in: qemu-kvm-rhev-10:2.6.0-28.el7_3.9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenStack Platform 8.0 (Liberty)Fixed in: qemu-kvm-rhev-10:2.6.0-28.el7_3.9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenStack Platform 9.0 (Mitaka)Fixed in: qemu-kvm-rhev-10:2.6.0-28.el7_3.9
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Virtualization 4 for Red Hat Enterprise Linux 7Fixed in: qemu-kvm-rhev-10:2.6.0-28.el7_3.10
View patch
redhatpatch availablevia redhat_api
Product: RHEV 3.X Hypervisor and Agents for RHEL-6Fixed in: qemu-kvm-rhev-2:0.12.1.2-2.503.el6_9.3
View patch
redhatpatch availablevia redhat_api
Product: RHEV 3.X Hypervisor and Agents for RHEL-7Fixed in: qemu-kvm-rhev-10:2.6.0-28.el7_3.10
View patch
redhatpatch availablevia redhat_api
Product: Red Hat OpenStack Platform 10.0 (Newton)Fixed in: qemu-kvm-rhev-10:2.6.0-28.el7_3.9
View patch
redhatpatch availablevia nvd_reference
View patch
redhatno patchvia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: qemu-kvm-rhev
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: kvm
redhatend of lifevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: xen

Vendor Advisories (2)

microsoft2017-Apr/CVE-2017-7718Moderate

hw/display/cirrus_vga_rop.h in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (out-of-bounds read and QEMU process crash) via vectors related to copying VGA data via the cirrus_bitblt_rop_fwd_transp_ and cirrus_bitblt_rop_fwd_ functions.

Apr 11, 2017
redhatCVE-2017-7718Moderate

Qemu: display: cirrus: OOB read access issue

Mar 14, 2017

References

git.qemu-project.org
access.redhat.com / errata/RHSA-2017:0980
Third Party Advisory
access.redhat.com / errata/RHSA-2017:0981
Third Party Advisory
access.redhat.com / errata/RHSA-2017:0982
Third Party Advisory
access.redhat.com / errata/RHSA-2017:0983
Third Party Advisory
access.redhat.com / errata/RHSA-2017:0984
Third Party Advisory
access.redhat.com / errata/RHSA-2017:0988
Third Party Advisory
access.redhat.com / errata/RHSA-2017:1205
Third Party Advisory
access.redhat.com / errata/RHSA-2017:1206
Third Party Advisory
access.redhat.com / errata/RHSA-2017:1430
Third Party Advisory
access.redhat.com / errata/RHSA-2017:1431
Third Party Advisory
access.redhat.com / errata/RHSA-2017:1441
Third Party Advisory
bugzilla.redhat.com / show_bug.cgi
Issue TrackingPatchThird Party Advisory
lists.debian.org / debian-lts-announce/2018/09/msg00007.html
Third Party Advisory
security.gentoo.org / glsa/201706-03
Third Party Advisory
openwall.com / lists/oss-security/2017/04/19/4
Mailing ListPatchThird Party Advisory
securityfocus.com / bid/97957
Third Party AdvisoryVDB Entry