Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2024:1438-1

Опубликовано: 25 апр. 2024
Источник: suse-cvrf

Описание

Security update for qemu

This update for qemu fixes the following issues:

  • CVE-2024-3447: Fixed heap buffer overflow in sdhci_write_dataport() (bsc#1222845)
  • CVE-2023-6683: Fixed NULL pointer dereference in qemu_clipboard_request() (bsc#1218889)
  • CVE-2024-3446: Fixed DMA reentrancy issue leads to double free vulnerability (bsc#1222843)
  • CVE-2023-3019: Fixed heap use-after-free in e1000e_write_packet_to_guest() (bsc#1213269)

Список пакетов

Container suse/sle-micro/kvm-5.5:latest
qemu-guest-agent-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5
qemu-7.1.0-150500.49.15.1
qemu-SLOF-7.1.0-150500.49.15.1
qemu-accel-tcg-x86-7.1.0-150500.49.15.1
qemu-arm-7.1.0-150500.49.15.1
qemu-audio-spice-7.1.0-150500.49.15.1
qemu-block-curl-7.1.0-150500.49.15.1
qemu-chardev-spice-7.1.0-150500.49.15.1
qemu-guest-agent-7.1.0-150500.49.15.1
qemu-hw-display-qxl-7.1.0-150500.49.15.1
qemu-hw-display-virtio-gpu-7.1.0-150500.49.15.1
qemu-hw-display-virtio-vga-7.1.0-150500.49.15.1
qemu-hw-usb-redirect-7.1.0-150500.49.15.1
qemu-ipxe-1.0.0+-150500.49.15.1
qemu-ppc-7.1.0-150500.49.15.1
qemu-s390x-7.1.0-150500.49.15.1
qemu-seabios-1.16.0_0_gd239552-150500.49.15.1
qemu-sgabios-8-150500.49.15.1
qemu-tools-7.1.0-150500.49.15.1
qemu-ui-opengl-7.1.0-150500.49.15.1
qemu-ui-spice-core-7.1.0-150500.49.15.1
qemu-vgabios-1.16.0_0_gd239552-150500.49.15.1
qemu-x86-7.1.0-150500.49.15.1
SUSE Linux Enterprise Module for Basesystem 15 SP5
qemu-tools-7.1.0-150500.49.15.1
SUSE Linux Enterprise Module for Package Hub 15 SP5
qemu-SLOF-7.1.0-150500.49.15.1
qemu-accel-qtest-7.1.0-150500.49.15.1
qemu-accel-tcg-x86-7.1.0-150500.49.15.1
qemu-arm-7.1.0-150500.49.15.1
qemu-audio-alsa-7.1.0-150500.49.15.1
qemu-audio-jack-7.1.0-150500.49.15.1
qemu-audio-oss-7.1.0-150500.49.15.1
qemu-audio-pa-7.1.0-150500.49.15.1
qemu-audio-spice-7.1.0-150500.49.15.1
qemu-block-dmg-7.1.0-150500.49.15.1
qemu-block-gluster-7.1.0-150500.49.15.1
qemu-block-nfs-7.1.0-150500.49.15.1
qemu-chardev-spice-7.1.0-150500.49.15.1
qemu-extra-7.1.0-150500.49.15.1
qemu-hw-display-qxl-7.1.0-150500.49.15.1
qemu-hw-display-virtio-gpu-7.1.0-150500.49.15.1
qemu-hw-display-virtio-gpu-pci-7.1.0-150500.49.15.1
qemu-hw-display-virtio-vga-7.1.0-150500.49.15.1
qemu-hw-s390x-virtio-gpu-ccw-7.1.0-150500.49.15.1
qemu-hw-usb-redirect-7.1.0-150500.49.15.1
qemu-hw-usb-smartcard-7.1.0-150500.49.15.1
qemu-ivshmem-tools-7.1.0-150500.49.15.1
qemu-microvm-7.1.0-150500.49.15.1
qemu-ppc-7.1.0-150500.49.15.1
qemu-s390x-7.1.0-150500.49.15.1
qemu-seabios-1.16.0_0_gd239552-150500.49.15.1
qemu-sgabios-8-150500.49.15.1
qemu-skiboot-7.1.0-150500.49.15.1
qemu-ui-gtk-7.1.0-150500.49.15.1
qemu-ui-opengl-7.1.0-150500.49.15.1
qemu-ui-spice-app-7.1.0-150500.49.15.1
qemu-ui-spice-core-7.1.0-150500.49.15.1
qemu-vgabios-1.16.0_0_gd239552-150500.49.15.1
qemu-vhost-user-gpu-7.1.0-150500.49.15.1
qemu-x86-7.1.0-150500.49.15.1
SUSE Linux Enterprise Module for Server Applications 15 SP5
qemu-7.1.0-150500.49.15.1
qemu-SLOF-7.1.0-150500.49.15.1
qemu-accel-tcg-x86-7.1.0-150500.49.15.1
qemu-arm-7.1.0-150500.49.15.1
qemu-audio-alsa-7.1.0-150500.49.15.1
qemu-audio-dbus-7.1.0-150500.49.15.1
qemu-audio-pa-7.1.0-150500.49.15.1
qemu-audio-spice-7.1.0-150500.49.15.1
qemu-block-curl-7.1.0-150500.49.15.1
qemu-block-iscsi-7.1.0-150500.49.15.1
qemu-block-rbd-7.1.0-150500.49.15.1
qemu-block-ssh-7.1.0-150500.49.15.1
qemu-chardev-baum-7.1.0-150500.49.15.1
qemu-chardev-spice-7.1.0-150500.49.15.1
qemu-guest-agent-7.1.0-150500.49.15.1
qemu-hw-display-qxl-7.1.0-150500.49.15.1
qemu-hw-display-virtio-gpu-7.1.0-150500.49.15.1
qemu-hw-display-virtio-gpu-pci-7.1.0-150500.49.15.1
qemu-hw-display-virtio-vga-7.1.0-150500.49.15.1
qemu-hw-s390x-virtio-gpu-ccw-7.1.0-150500.49.15.1
qemu-hw-usb-host-7.1.0-150500.49.15.1
qemu-hw-usb-redirect-7.1.0-150500.49.15.1
qemu-ipxe-1.0.0+-150500.49.15.1
qemu-ksm-7.1.0-150500.49.15.1
qemu-kvm-7.1.0-150500.49.15.1
qemu-lang-7.1.0-150500.49.15.1
qemu-ppc-7.1.0-150500.49.15.1
qemu-s390x-7.1.0-150500.49.15.1
qemu-seabios-1.16.0_0_gd239552-150500.49.15.1
qemu-sgabios-8-150500.49.15.1
qemu-skiboot-7.1.0-150500.49.15.1
qemu-ui-curses-7.1.0-150500.49.15.1
qemu-ui-dbus-7.1.0-150500.49.15.1
qemu-ui-gtk-7.1.0-150500.49.15.1
qemu-ui-opengl-7.1.0-150500.49.15.1
qemu-ui-spice-app-7.1.0-150500.49.15.1
qemu-ui-spice-core-7.1.0-150500.49.15.1
qemu-vgabios-1.16.0_0_gd239552-150500.49.15.1
qemu-x86-7.1.0-150500.49.15.1
openSUSE Leap 15.5
qemu-7.1.0-150500.49.15.1
qemu-SLOF-7.1.0-150500.49.15.1
qemu-accel-qtest-7.1.0-150500.49.15.1
qemu-accel-tcg-x86-7.1.0-150500.49.15.1
qemu-arm-7.1.0-150500.49.15.1
qemu-audio-alsa-7.1.0-150500.49.15.1
qemu-audio-dbus-7.1.0-150500.49.15.1
qemu-audio-jack-7.1.0-150500.49.15.1
qemu-audio-pa-7.1.0-150500.49.15.1
qemu-audio-spice-7.1.0-150500.49.15.1
qemu-block-curl-7.1.0-150500.49.15.1
qemu-block-dmg-7.1.0-150500.49.15.1
qemu-block-gluster-7.1.0-150500.49.15.1
qemu-block-iscsi-7.1.0-150500.49.15.1
qemu-block-nfs-7.1.0-150500.49.15.1
qemu-block-rbd-7.1.0-150500.49.15.1
qemu-block-ssh-7.1.0-150500.49.15.1
qemu-chardev-baum-7.1.0-150500.49.15.1
qemu-chardev-spice-7.1.0-150500.49.15.1
qemu-extra-7.1.0-150500.49.15.1
qemu-guest-agent-7.1.0-150500.49.15.1
qemu-hw-display-qxl-7.1.0-150500.49.15.1
qemu-hw-display-virtio-gpu-7.1.0-150500.49.15.1
qemu-hw-display-virtio-gpu-pci-7.1.0-150500.49.15.1
qemu-hw-display-virtio-vga-7.1.0-150500.49.15.1
qemu-hw-s390x-virtio-gpu-ccw-7.1.0-150500.49.15.1
qemu-hw-usb-host-7.1.0-150500.49.15.1
qemu-hw-usb-redirect-7.1.0-150500.49.15.1
qemu-hw-usb-smartcard-7.1.0-150500.49.15.1
qemu-ipxe-1.0.0+-150500.49.15.1
qemu-ivshmem-tools-7.1.0-150500.49.15.1
qemu-ksm-7.1.0-150500.49.15.1
qemu-kvm-7.1.0-150500.49.15.1
qemu-lang-7.1.0-150500.49.15.1
qemu-microvm-7.1.0-150500.49.15.1
qemu-ppc-7.1.0-150500.49.15.1
qemu-s390x-7.1.0-150500.49.15.1
qemu-seabios-1.16.0_0_gd239552-150500.49.15.1
qemu-sgabios-8-150500.49.15.1
qemu-skiboot-7.1.0-150500.49.15.1
qemu-tools-7.1.0-150500.49.15.1
qemu-ui-curses-7.1.0-150500.49.15.1
qemu-ui-dbus-7.1.0-150500.49.15.1
qemu-ui-gtk-7.1.0-150500.49.15.1
qemu-ui-opengl-7.1.0-150500.49.15.1
qemu-ui-spice-app-7.1.0-150500.49.15.1
qemu-ui-spice-core-7.1.0-150500.49.15.1
qemu-vgabios-1.16.0_0_gd239552-150500.49.15.1
qemu-vhost-user-gpu-7.1.0-150500.49.15.1
qemu-x86-7.1.0-150500.49.15.1

Описание

A DMA reentrancy issue leading to a use-after-free error was found in the e1000e NIC emulation code in QEMU. This issue could allow a privileged guest user to crash the QEMU process on the host, resulting in a denial of service.


Затронутые продукты
Container suse/sle-micro/kvm-5.5:latest:qemu-guest-agent-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-SLOF-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-accel-tcg-x86-7.1.0-150500.49.15.1

Ссылки

Описание

A flaw was found in the QEMU built-in VNC server while processing ClientCutText messages. The qemu_clipboard_request() function can be reached before vnc_server_cut_text_caps() was called and had the chance to initialize the clipboard peer, leading to a NULL pointer dereference. This could allow a malicious authenticated VNC client to crash QEMU and trigger a denial of service.


Затронутые продукты
Container suse/sle-micro/kvm-5.5:latest:qemu-guest-agent-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-SLOF-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-accel-tcg-x86-7.1.0-150500.49.15.1

Ссылки

Описание

A double free vulnerability was found in QEMU virtio devices (virtio-gpu, virtio-serial-bus, virtio-crypto), where the mem_reentrancy_guard flag insufficiently protects against DMA reentrancy issues. This issue could allow a malicious privileged guest user to crash the QEMU process on the host, resulting in a denial of service or allow arbitrary code execution within the context of the QEMU process on the host.


Затронутые продукты
Container suse/sle-micro/kvm-5.5:latest:qemu-guest-agent-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-SLOF-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-accel-tcg-x86-7.1.0-150500.49.15.1

Ссылки

Описание

A heap-based buffer overflow was found in the SDHCI device emulation of QEMU. The bug is triggered when both `s->data_count` and the size of `s->fifo_buffer` are set to 0x200, leading to an out-of-bound access. A malicious guest could use this flaw to crash the QEMU process on the host, resulting in a denial of service condition.


Затронутые продукты
Container suse/sle-micro/kvm-5.5:latest:qemu-guest-agent-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-SLOF-7.1.0-150500.49.15.1
SUSE Linux Enterprise Micro 5.5:qemu-accel-tcg-x86-7.1.0-150500.49.15.1

Ссылки
Уязвимость SUSE-SU-2024:1438-1