CVE-2017-7539: Input Validation
An assertion-failure flaw was found in Qemu before 2.10.1, in the Network Block Device (NBD) server's initial connection negotiation, where the I/O coroutine was undefined. This could crash the qemu-nbd server if a client sent unexpected data during connection negotiation. A remote user or process could use this flaw to crash the qemu-nbd server resulting in denial of service.
Other sources
Quick Emulator(Qemu) built with the Network Block Device(NBD) Server support is vulnerable to a crash via assertion failure. It could occur if a client sent undue data during initial connection negotiation.
A remote user/process could use this flaw to crash the qemu-nbd server resulting in DoS.
Upstream patch: --------------- -> http://git.qemu.org/?p=qemu.git;a=commitdiff;h=2b0bbc4f8809c972bad134bc1a2570dbb01dea0b
Introduced by: -------------- -> http://git.qemu.org/?p=qemu.git;a=commitdiff;h=ff82911cd3f69f028f2537825c9720ff78bc3f19
Reference: ---------- -> http://www.openwall.com/lists/oss-security/2017/07/21/4
— Red Hat
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-7539?
CVE-2017-7539 has a medium severity rating due to the potential for denial of service attacks.
How do I fix CVE-2017-7539?
To fix CVE-2017-7539, upgrade QEMU to version 2.10.1 or later, or apply relevant patches provided by your software vendor.
Which versions of QEMU are affected by CVE-2017-7539?
QEMU versions prior to 2.10.1 are affected by CVE-2017-7539.
Can CVE-2017-7539 be exploited remotely?
Yes, CVE-2017-7539 can be exploited remotely by sending unexpected data during connection negotiation to the qemu-nbd server.
What software products are impacted by CVE-2017-7539?
Software products impacted by CVE-2017-7539 include QEMU versions earlier than 2.10.1 and several versions of Red Hat OpenStack.