Описание
qemu-bridge-helper.c in QEMU 3.1 and 4.0.0 does not ensure that a network interface name (obtained from bridge.conf or a --br=bridge option) is limited to the IFNAMSIZ size, which can lead to an ACL bypass.
Отчет
Red Hat Virtualization Hypervisor is not affected by this vulnerability, as its bridge configuration can not take the required form.
Меры по смягчению последствий
This flaw can only be exploited if /etc/qemu*/bridge.conf contains a line containing allow all or at least one line with a bridge name of at least 15 characters.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 6 | qemu-kvm | Not affected | ||
| Red Hat Enterprise Linux 7 | qemu-kvm | Fix deferred | ||
| Red Hat Enterprise Linux 7 | qemu-kvm-ma | Fix deferred | ||
| Red Hat Enterprise Linux 7 | qemu-kvm-rhev | Fix deferred | ||
| Red Hat Enterprise Linux 8 | virt:rhel/qemu-kvm | Fix deferred | ||
| Red Hat Enterprise Linux 8 Advanced Virtualization | virt:8.0.0/qemu-kvm | Fix deferred | ||
| Red Hat OpenStack Platform 10 (Newton) | qemu-kvm-rhev | Fix deferred | ||
| Red Hat OpenStack Platform 13 (Queens) | qemu-kvm-rhev | Fix deferred | ||
| Red Hat OpenStack Platform 14 (Rocky) | qemu-kvm-rhev | Out of support scope | ||
| Red Hat OpenStack Platform 9 (Mitaka) | qemu-kvm-rhev | Fix deferred |
Показывать по
Дополнительная информация
Статус:
EPSS
2.5 Low
CVSS3
Связанные уязвимости
qemu-bridge-helper.c in QEMU 3.1 and 4.0.0 does not ensure that a network interface name (obtained from bridge.conf or a --br=bridge option) is limited to the IFNAMSIZ size, which can lead to an ACL bypass.
qemu-bridge-helper.c in QEMU 3.1 and 4.0.0 does not ensure that a network interface name (obtained from bridge.conf or a --br=bridge option) is limited to the IFNAMSIZ size, which can lead to an ACL bypass.
qemu-bridge-helper.c in QEMU 3.1 and 4.0.0 does not ensure that a netw ...
qemu-bridge-helper.c in QEMU 4.0.0 does not ensure that a network interface name (obtained from bridge.conf or a --br=bridge option) is limited to the IFNAMSIZ size, which can lead to an ACL bypass.
Уязвимость функции qemu-bridge-helper.c эмулятора аппаратного обеспечения QEMU, связанная с недостатках элементов безопасности, позволяющая нарушителю получить несанкционированный доступ к информации, вызвать отказ в обслуживании или оказать воздействие на доступность информации
EPSS
2.5 Low
CVSS3