First published: Sat Dec 10 2016(Updated: )
The mptsas_fetch_requests function in hw/scsi/mptsas.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop, and CPU consumption or QEMU process crash) via vectors involving s->state.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
QEMU KVM | <=2.6.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-4964 is classified as a denial of service vulnerability with potential for high impact due to CPU consumption and process crashes.
To fix CVE-2016-4964, upgrade QEMU to version 2.6.3 or later where the vulnerability is addressed.
CVE-2016-4964 affects QEMU versions up to and including 2.6.2.
CVE-2016-4964 can be exploited by local guest OS administrators to cause a denial of service.
Exploitation of CVE-2016-4964 can lead to an infinite loop, resulting in high CPU usage or a crash of the QEMU process.