Описание
The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors related to dst calculation.
Quick emulator (QEMU), compiled with the Cirrus CLGD 54xx VGA Emulator support, is vulnerable to an OOB write access issue. The issue could occur while writing to VGA memory via mode4and5 write functions. A privileged user inside guest could use this flaw to crash the QEMU process resulting in Denial of Serivce (DoS).
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 5 | kvm | Will not fix | ||
Red Hat Enterprise Linux 5 | xen | Will not fix | ||
Red Hat OpenStack Platform 12 (Pike) | qemu-kvm-rhev | Not affected | ||
Red Hat Enterprise Linux 6 | qemu-kvm | Fixed | RHSA-2018:0516 | 13.03.2018 |
Red Hat Enterprise Linux 7 | qemu-kvm | Fixed | RHSA-2017:3368 | 30.11.2017 |
Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7 | qemu-kvm-rhev | Fixed | RHSA-2017:3473 | 14.12.2017 |
Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for RHEL 7 | qemu-kvm-rhev | Fixed | RHSA-2017:3472 | 14.12.2017 |
Red Hat OpenStack Platform 10.0 (Newton) | qemu-kvm-rhev | Fixed | RHSA-2017:3474 | 14.12.2017 |
Red Hat OpenStack Platform 11.0 (Ocata) | qemu-kvm-rhev | Fixed | RHSA-2017:3466 | 14.12.2017 |
Red Hat OpenStack Platform 8.0 (Liberty) | qemu-kvm-rhev | Fixed | RHSA-2017:3471 | 14.12.2017 |
Показывать по
Дополнительная информация
Статус:
EPSS
4.4 Medium
CVSS3
2.9 Low
CVSS2
Связанные уязвимости
The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors related to dst calculation.
The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors related to dst calculation.
The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow ...
The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors related to dst calculation.
EPSS
4.4 Medium
CVSS3
2.9 Low
CVSS2