CVE-2017-8086: Medium severity Qemu Qemu vulnerability

Published Apr 24, 2017
·
Updated

Memory leak in the v9fslistxattr function in hw/9pfs/9p-xattr.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (memory consumption) via vectors involving the origvalue variable.

Other sources

Quick Emulator(Qemu) built with the virtio-9p back-end support is vulnerable to a memory leakage issue. It could occur while querying file system extended attributes via 9pfslistxattr() routine.

A privileged user/process inside guest could use this flaw to leak host memory resulting in Dos.

Upstream patch: --------------- -> http://git.qemu.org/?p=qemu.git;a=commit;h=4ffcdef4277a91af15a3c09f7d16af072c29f3f2

Reference: ---------- -> http://www.openwall.com/lists/oss-security/2017/04/25/5

Affected Software

6 affected components
Qemu Qemu<=2.8.1
Qemu Qemu=2.9.0-rc0
Qemu Qemu=2.9.0-rc1
Qemu Qemu=2.9.0-rc2
Qemu Qemu=2.9.0-rc3
Debian Debian Linux=8.0

Event History

Apr 24, 2017
Data Sourced
09:43 AM
DescriptionSeverityAffected Software
May 2, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description

Frequently Asked Questions

1

What is the severity of CVE-2017-8086?

CVE-2017-8086 has been classified with a moderate severity as it can lead to a denial of service due to memory consumption.

2

How do I fix CVE-2017-8086?

To address CVE-2017-8086, you should upgrade QEMU to version 2.9.0 or later to eliminate the memory leak vulnerability.

3

Who is affected by CVE-2017-8086?

CVE-2017-8086 affects local guest OS privileged users running specific versions of QEMU built with the virtio-9p back-end support.

4

What is the cause of CVE-2017-8086?

CVE-2017-8086 is caused by a memory leak in the v9fs_list_xattr function within the QEMU codebase.

5

What versions of QEMU are vulnerable to CVE-2017-8086?

Versions of QEMU up to 2.8.1 and 2.9.0-rc0, 2.9.0-rc1, 2.9.0-rc2, and 2.9.0-rc3 are vulnerable to CVE-2017-8086.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203