CVE-2016-9776: Medium severity qemu vulnerability

Published Dec 2, 2016
·
Updated

QEMU (aka Quick Emulator) built with the ColdFire Fast Ethernet Controller emulator support is vulnerable to an infinite loop issue. It could occur while receiving packets in 'mcffecreceive'. A privileged user/process inside guest could use this issue to crash the QEMU process on the host leading to DoS.

Other sources

Quick Emulator(Qemu) built with the ColdFire Fast Ethernet Controller emulator support is vulnerable to an infinite loop issue. It could occur while receiving packets in 'mcffecreceive'.

A privileged user/process inside guest could use this issue to crash the Qemu process on the host leading to DoS.

Upstream patch -------------- -> https://lists.gnu.org/archive/html/qemu-devel/2016-11/msg05324.html

Reference: ---------- -> http://www.openwall.com/lists/oss-security/2016/12/02/3

Red Hat

Affected Software

5 affected components
Qemu Qemu<=2.7.1
Qemu Qemu=2.8.0-rc0
Qemu Qemu=2.8.0-rc1
Qemu Qemu=2.8.0-rc2
Debian Debian Linux=8.0

Event History

Dec 2, 2016
Data Sourced
via Red Hat·07:58 AM
DescriptionSeverityAffected Software
Dec 29, 2016
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description

Frequently Asked Questions

1

What is the severity of CVE-2016-9776?

CVE-2016-9776 is classified as a high severity vulnerability due to its potential to crash the QEMU process on the host.

2

How do I fix CVE-2016-9776?

To mitigate CVE-2016-9776, upgrade to QEMU version 2.8.0 or later, which contains the necessary patches.

3

Who is affected by CVE-2016-9776?

CVE-2016-9776 affects QEMU versions up to 2.7.1 and the specific release candidates 2.8.0-rc0, 2.8.0-rc1, and 2.8.0-rc2.

4

Can CVE-2016-9776 be exploited remotely?

Exploitation of CVE-2016-9776 requires a privileged user or process within the guest environment, making it less likely to be exploited remotely.

5

What kind of issue is CVE-2016-9776?

CVE-2016-9776 is an infinite loop issue occurring in the ColdFire Fast Ethernet Controller emulator while receiving packets.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203