First published: Thu Mar 20 2014(Updated: )
A buffer overflow flaw was found in the way qemu processed MAC addresses table update requests from the guest. A privileged guest user could use this flaw to corrupt qemu process memory on the host, which could potentially result in arbitrary code execution on the host with the privileges of the qemu process. Acknowledgements: This issue was discovered by Michael S. Tsirkin of Red Hat.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
QEMU KVM | <=2.0 | |
QEMU KVM | <=2.0.0 | |
QEMU KVM | =0.1.0 | |
QEMU KVM | =0.1.1 | |
QEMU KVM | =0.1.2 | |
QEMU KVM | =0.1.3 | |
QEMU KVM | =0.1.4 | |
QEMU KVM | =0.1.5 | |
QEMU KVM | =0.1.6 | |
QEMU KVM | =0.2.0 | |
QEMU KVM | =0.3.0 | |
QEMU KVM | =0.4.0 | |
QEMU KVM | =0.4.1 | |
QEMU KVM | =0.4.2 | |
QEMU KVM | =0.4.3 | |
QEMU KVM | =0.5.0 | |
QEMU KVM | =0.5.1 | |
QEMU KVM | =0.5.2 | |
QEMU KVM | =0.5.3 | |
QEMU KVM | =0.5.4 | |
QEMU KVM | =0.5.5 | |
QEMU KVM | =0.6.0 | |
QEMU KVM | =0.6.1 | |
QEMU KVM | =0.7.0 | |
QEMU KVM | =0.7.1 | |
QEMU KVM | =0.7.2 | |
QEMU KVM | =0.8.0 | |
QEMU KVM | =0.8.1 | |
QEMU KVM | =0.8.2 | |
QEMU KVM | =0.9.0 | |
QEMU KVM | =0.9.1 | |
QEMU KVM | =0.9.1-5 | |
QEMU KVM | =0.10.0 | |
QEMU KVM | =0.10.1 | |
QEMU KVM | =0.10.2 | |
QEMU KVM | =0.10.3 | |
QEMU KVM | =0.10.4 | |
QEMU KVM | =0.10.5 | |
QEMU KVM | =0.10.6 | |
QEMU KVM | =0.11.0 | |
QEMU KVM | =0.11.0-rc0 | |
QEMU KVM | =0.11.0-rc1 | |
QEMU KVM | =0.11.0-rc2 | |
QEMU KVM | =0.11.0-rc0 | |
QEMU KVM | =0.11.0-rc1 | |
QEMU KVM | =0.11.0-rc2 | |
QEMU KVM | =0.11.1 | |
QEMU KVM | =0.12.0 | |
QEMU KVM | =0.12.0-rc1 | |
QEMU KVM | =0.12.0-rc2 | |
QEMU KVM | =0.12.1 | |
QEMU KVM | =0.12.2 | |
QEMU KVM | =0.12.3 | |
QEMU KVM | =0.12.4 | |
QEMU KVM | =0.12.5 | |
QEMU KVM | =0.13.0 | |
QEMU KVM | =0.13.0-rc0 | |
QEMU KVM | =0.13.0-rc1 | |
QEMU KVM | =0.14.0 | |
QEMU KVM | =0.14.0-rc0 | |
QEMU KVM | =0.14.0-rc1 | |
QEMU KVM | =0.14.0-rc2 | |
QEMU KVM | =0.14.1 | |
QEMU KVM | =0.15.0-rc1 | |
QEMU KVM | =0.15.0-rc2 | |
QEMU KVM | =0.15.1 | |
QEMU KVM | =0.15.2 | |
QEMU KVM | =1.0 | |
QEMU KVM | =1.0-rc1 | |
QEMU KVM | =1.0-rc2 | |
QEMU KVM | =1.0-rc3 | |
QEMU KVM | =1.0-rc4 | |
QEMU KVM | =1.0.1 | |
QEMU KVM | =1.1 | |
QEMU KVM | =1.1-rc1 | |
QEMU KVM | =1.1-rc2 | |
QEMU KVM | =1.1-rc3 | |
QEMU KVM | =1.1-rc4 | |
QEMU KVM | =1.4.1 | |
QEMU KVM | =1.4.2 | |
QEMU KVM | =1.5.0 | |
QEMU KVM | =1.5.0-rc1 | |
QEMU KVM | =1.5.0-rc2 | |
QEMU KVM | =1.5.0-rc3 | |
QEMU KVM | =1.5.1 | |
QEMU KVM | =1.5.2 | |
QEMU KVM | =1.5.3 | |
QEMU KVM | =1.6.0 | |
QEMU KVM | =1.6.0-rc1 | |
QEMU KVM | =1.6.0-rc2 | |
QEMU KVM | =1.6.0-rc3 | |
QEMU KVM | =1.6.1 | |
QEMU KVM | =1.6.2 | |
QEMU KVM | =1.7.1 | |
QEMU KVM | =2.0.0-rc0 | |
QEMU KVM | =2.0.0-rc1 | |
QEMU KVM | =2.0.0-rc2 | |
QEMU KVM | =2.0.0-rc3 | |
Red Hat Enterprise Linux | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0150 has a medium severity rating due to the potential for arbitrary code execution on the host.
To fix CVE-2014-0150, upgrade QEMU to version 2.0.1 or later.
Privileged users of QEMU versions up to 2.0, including various early versions from 0.1.0 to 2.0.0, are affected by CVE-2014-0150.
CVE-2014-0150 is classified as a buffer overflow vulnerability.
An attacker exploiting CVE-2014-0150 could potentially execute arbitrary code on the host system with the privileges of the QEMU process.