REDHAT-BUG-1418382: Low severity Qemu Qemu vulnerability
Quick Emulator(Qemu) built with the Virtio GPU Device emulator support is vulnerable to a host memory leakage issue. It could occur while processing 'VIRTIOGPUCMDRESOURCEUNREF' command.
A guest user/process could use this flaw to leak host memory resulting in DoS.
Upstream patch: --------------- -> https://lists.nongnu.org/archive/html/qemu-devel/2017-01/msg04615.html
Reference: ---------- -> http://www.openwall.com/lists/oss-security/2017/02/01/21
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-1418382?
The severity of REDHAT-BUG-1418382 is classified as low.
What type of issue is associated with REDHAT-BUG-1418382?
REDHAT-BUG-1418382 is associated with a host memory leakage issue in Qemu.
How can REDHAT-BUG-1418382 be mitigated?
Mitigation for REDHAT-BUG-1418382 involves applying the upstream patch provided by the Qemu developers.
What command triggers the vulnerability in REDHAT-BUG-1418382?
The vulnerability in REDHAT-BUG-1418382 is triggered while processing the 'VIRTIO_GPU_CMD_RESOURCE_UNREF' command.
What potential impact does REDHAT-BUG-1418382 have?
The potential impact of REDHAT-BUG-1418382 is a denial of service (DoS) due to host memory leakage.