QEMU (aka Quick Emulator) built to use address_space_translate to map an address to a MemoryRegionSection is vulnerable to an OOB r/w access issue. It could occur while doing pci_dma_read/write calls. Affects QEMU versions >= 1.6.0 and <= 2.3.1. A privileged user inside guest could use this flaw to crash the guest instance resulting in DoS.
The product reads data past the end, or before the beginning, of the intended buffer.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Qemu | Qemu | 1.6.0 (including) | 1.6.0 (including) |
Qemu | Qemu | 1.6.0-rc1 (including) | 1.6.0-rc1 (including) |
Qemu | Qemu | 1.6.0-rc2 (including) | 1.6.0-rc2 (including) |
Qemu | Qemu | 1.6.0-rc3 (including) | 1.6.0-rc3 (including) |
Qemu | Qemu | 1.6.1 (including) | 1.6.1 (including) |
Qemu | Qemu | 1.6.2 (including) | 1.6.2 (including) |
Qemu | Qemu | 1.7.1 (including) | 1.7.1 (including) |
Qemu | Qemu | 2.0.0 (including) | 2.0.0 (including) |
Qemu | Qemu | 2.0.0-rc0 (including) | 2.0.0-rc0 (including) |
Qemu | Qemu | 2.0.0-rc1 (including) | 2.0.0-rc1 (including) |
Qemu | Qemu | 2.0.0-rc2 (including) | 2.0.0-rc2 (including) |
Qemu | Qemu | 2.0.0-rc3 (including) | 2.0.0-rc3 (including) |
Qemu | Qemu | 2.0.2 (including) | 2.0.2 (including) |
Qemu | Qemu | 2.1.0 (including) | 2.1.0 (including) |
Qemu | Qemu | 2.1.0-rc0 (including) | 2.1.0-rc0 (including) |
Qemu | Qemu | 2.1.0-rc1 (including) | 2.1.0-rc1 (including) |
Qemu | Qemu | 2.1.0-rc2 (including) | 2.1.0-rc2 (including) |
Qemu | Qemu | 2.1.0-rc3 (including) | 2.1.0-rc3 (including) |
Qemu | Qemu | 2.1.0-rc5 (including) | 2.1.0-rc5 (including) |
Qemu | Qemu | 2.1.1 (including) | 2.1.1 (including) |
Qemu | Qemu | 2.1.2 (including) | 2.1.2 (including) |
Qemu | Qemu | 2.1.3 (including) | 2.1.3 (including) |
Qemu | Qemu | 2.2.0 (including) | 2.2.0 (including) |
Qemu | Qemu | 2.2.1 (including) | 2.2.1 (including) |
Qemu | Qemu | 2.3.0 (including) | 2.3.0 (including) |
Qemu | Qemu | 2.3.1 (including) | 2.3.1 (including) |
Red Hat Enterprise Linux OpenStack Platform 5.0 (Icehouse) for RHEL 7 | RedHat | qemu-kvm-rhev-10:2.6.0-27.el7 | * |
Red Hat Enterprise Linux OpenStack Platform 6.0 (Juno) for RHEL 7 | RedHat | qemu-kvm-rhev-10:2.6.0-27.el7 | * |
Red Hat Enterprise Linux OpenStack Platform 7.0 (Kilo) for RHEL 7 | RedHat | qemu-kvm-rhev-10:2.6.0-27.el7 | * |
Red Hat OpenStack Platform 8.0 (Liberty) | RedHat | qemu-kvm-rhev-10:2.6.0-27.el7 | * |
Red Hat OpenStack Platform 9.0 (Mitaka) | RedHat | qemu-kvm-rhev-10:2.6.0-27.el7 | * |
Qemu | Ubuntu | esm-infra-legacy/trusty | * |
Qemu | Ubuntu | trusty | * |
Qemu | Ubuntu | trusty/esm | * |
Qemu | Ubuntu | wily | * |