First published: Wed Apr 10 2024(Updated: )
A flaw was found in QEMU. An assertion failure was present in the update_sctp_checksum() function in hw/net/net_tx_pkt.c when trying to calculate the checksum of a short-sized fragmented packet. This flaw allows a malicious guest to crash QEMU and cause a denial of service condition.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
QEMU KVM | >=8.1.0<8.2.3 | |
QEMU KVM | =9.0.0-rc0 | |
QEMU KVM | =9.0.0-rc1 | |
QEMU KVM | =9.0.0-rc2 | |
Red Hat Enterprise Linux | =9.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.