Buffer overflow in hw/timer/hpet.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via vectors related to the number of timers. http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-4527