First published: Sat Dec 10 2016(Updated: )
The vmsvga_fifo_run function in hw/display/vmware_vga.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors related to cursor.mask[] and cursor.image[] array sizes when processing a DEFINE_CURSOR svga command.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
QEMU KVM | <=2.7.1 | |
Debian GNU/Linux | =8.0 | |
openSUSE | =42.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-7170 has a severity rating that indicates it can lead to a denial of service.
To fix CVE-2016-7170, users should update to a version of QEMU that is greater than or equal to 2.7.2.
CVE-2016-7170 affects QEMU versions up to 2.7.1 and specific versions of Debian and openSUSE.
CVE-2016-7170 is a local denial of service vulnerability caused by out-of-bounds write operations.
CVE-2016-7170 cannot be exploited remotely as it requires local guest OS administrator access.