|
|
Log in / Subscribe / Register

qemu: three vulnerabilities

Package(s):qemu CVE #(s):CVE-2016-7466 CVE-2016-8576 CVE-2016-7995
Created:October 19, 2016 Updated:October 26, 2016
Description: From the Red Hat bugzilla:

CVE-2016-7466: Quick Emulator(Qemu) built with the USB xHCI controller emulation support is vulnerable to a memory leakage issue. It could occur while doing a USB device unplug operation; Doing so repeatedly would result in leaking host memory, affecting other services on the host.

A privileged user inside guest could use this flaw to cause a DoS on the host and/or potentially crash the Qemu process instance on the host.

CVE-2016-8576: Quick Emulator(Qemu) built with the USB xHCI controller emulation support is vulnerable to an infinite loop issue. It could occur while processing USB command ring in 'xhci_ring_fetch'.

A privileged user/process inside guest could use this issue to crash the Qemu process on the host leading to DoS.

CVE-2016-7995: Qemu emulator(Qemu) built with the USB EHCI emulation support is vulnerable to a memory leakage flaw. It could occur while processing isochronous transfer descriptors(iTD), with buffer page select(PG) index that falls beyond buffer page array area.

A privileged user inside guest could use this flaw to leak Qemu memory bytes leading to a DoS on the host.

Alerts:
Fedora FEDORA-2016-da6b1d277b xen 2016-11-10
Ubuntu USN-3125-1 qemu, qemu-kvm 2016-11-09
Fedora FEDORA-2016-0d1a8ee35b xen 2016-11-10
Debian-LTS DLA-679-1 qemu-kvm 2016-10-25
Debian-LTS DLA-678-1 qemu 2016-10-25
Fedora FEDORA-2016-a56fb613a8 qemu 2016-10-18
openSUSE openSUSE-SU-2017:0008-1 xen 2017-01-02
openSUSE openSUSE-SU-2017:0007-1 xen 2017-01-02
openSUSE openSUSE-SU-2016:3237-1 qemu 2016-12-22
SUSE SUSE-SU-2016:3174-1 xen 2016-12-16
SUSE SUSE-SU-2016:3156-1 xen 2016-12-14
openSUSE openSUSE-SU-2016:3103-1 qemu 2016-12-12
SUSE SUSE-SU-2016:3083-1 xen 2016-12-12
SUSE SUSE-SU-2016:2988-1 qemu 2016-12-02
SUSE SUSE-SU-2016:2936-1 qemu 2016-11-29
SUSE SUSE-SU-2016:2902-1 kvm 2016-11-24
Gentoo 201611-11 qemu 2016-11-19
Fedora FEDORA-2016-7b6fbff620 xen 2016-11-19

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds