Heap-based buffer overflow in the virtio_load function in hw/virtio/virtio.c in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a crafted config length in a savevm image. http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-0182