Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-6505

Опубликовано: 04 июл. 2024
Источник: redhat
CVSS3: 6.8

Описание

A flaw was found in the virtio-net device in QEMU. When enabling the RSS feature on the virtio-net network card, the indirections_table data within RSS becomes controllable. Setting excessively large values may cause an index out-of-bounds issue, potentially resulting in heap overflow access. This flaw allows a privileged user in the guest to crash the QEMU process on the host.

Отчет

This flaw has been rated as Moderate because it can only be exploited by privileged users within the guest.

Меры по смягчению последствий

A viable mitigation for this vulnerability is to disable RSS on the nic/virtio driver. This can be performed either with the following qemu-kvm command "-device virtio-net-pci,rss=off", or, alternatively, by directly modifying the KVM XML file to disable RSS using a standard configuration tool (ex. libvirt).

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10qemu-kvmWill not fix
Red Hat Enterprise Linux 6qemu-kvmOut of support scope
Red Hat Enterprise Linux 7qemu-kvmOut of support scope
Red Hat Enterprise Linux 7qemu-kvm-maOut of support scope
Red Hat Enterprise Linux 8virt:rhel/qemu-kvmWill not fix
Red Hat Enterprise Linux 8 Advanced Virtualizationvirt:av/qemu-kvmWill not fix
Red Hat Enterprise Linux 9qemu-kvmWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2295760qemu-kvm: virtio-net: queue index out-of-bounds access in software RSS

6.8 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.8
ubuntu
12 месяцев назад

A flaw was found in the virtio-net device in QEMU. When enabling the RSS feature on the virtio-net network card, the indirections_table data within RSS becomes controllable. Setting excessively large values may cause an index out-of-bounds issue, potentially resulting in heap overflow access. This flaw allows a privileged user in the guest to crash the QEMU process on the host.

CVSS3: 6.8
nvd
12 месяцев назад

A flaw was found in the virtio-net device in QEMU. When enabling the RSS feature on the virtio-net network card, the indirections_table data within RSS becomes controllable. Setting excessively large values may cause an index out-of-bounds issue, potentially resulting in heap overflow access. This flaw allows a privileged user in the guest to crash the QEMU process on the host.

CVSS3: 6.8
msrc
около 2 месяцев назад

Описание отсутствует

CVSS3: 6.8
debian
12 месяцев назад

A flaw was found in the virtio-net device in QEMU. When enabling the R ...

CVSS3: 6.8
redos
9 месяцев назад

Уязвимость qemu

6.8 Medium

CVSS3

Уязвимость CVE-2024-6505