Bugzilla – Bug 964411
VUL-1: CVE-2016-2197: qemu: ide: ahci null pointer dereference when using FIS CLB engines
Last modified: 2017-08-15 13:29:43 UTC
rh#1302057 Qemu emulator built with an IDE AHCI emulation support is vulnerable to a null pointer dereference flaw. It occurs while unmapping the Frame Information Structure(FIS) & Command List Block(CLB) entries. A privileged user inside guest could use this flaw to crash the Qemu process instance resulting in DoS. Patch: https://lists.gnu.org/archive/html/qemu-devel/2016-01/msg06114.html References: https://bugzilla.redhat.com/show_bug.cgi?id=1302057 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-2197 http://seclists.org/oss-sec/2016/q1/254 http://people.canonical.com/~ubuntu-security/cve/2016/CVE-2016-2197.html
bugbot adjusting priority
SUSE-SU-2016:1703-1: An update that solves 32 vulnerabilities and has two fixes is now available. Category: security (important) Bug References: 886378,940929,958491,958917,959005,959386,960334,960708,960725,960835,961332,961333,961358,961556,961691,962320,963782,964411,964413,967969,969121,969122,969350,970036,970037,975128,975136,975700,976109,978158,978160,980711,980723,981266 CVE References: CVE-2015-5745,CVE-2015-7549,CVE-2015-8504,CVE-2015-8558,CVE-2015-8567,CVE-2015-8568,CVE-2015-8613,CVE-2015-8619,CVE-2015-8743,CVE-2015-8744,CVE-2015-8745,CVE-2015-8817,CVE-2015-8818,CVE-2016-1568,CVE-2016-1714,CVE-2016-1922,CVE-2016-1981,CVE-2016-2197,CVE-2016-2198,CVE-2016-2538,CVE-2016-2841,CVE-2016-2857,CVE-2016-2858,CVE-2016-3710,CVE-2016-3712,CVE-2016-4001,CVE-2016-4002,CVE-2016-4020,CVE-2016-4037,CVE-2016-4439,CVE-2016-4441,CVE-2016-4952 Sources used: SUSE Linux Enterprise Server 12-SP1 (src): qemu-2.3.1-14.1 SUSE Linux Enterprise Desktop 12-SP1 (src): qemu-2.3.1-14.1
openSUSE-SU-2016:1750-1: An update that solves 32 vulnerabilities and has two fixes is now available. Category: security (important) Bug References: 886378,940929,958491,958917,959005,959386,960334,960708,960725,960835,961332,961333,961358,961556,961691,962320,963782,964411,964413,967969,969121,969122,969350,970036,970037,975128,975136,975700,976109,978158,978160,980711,980723,981266 CVE References: CVE-2015-5745,CVE-2015-7549,CVE-2015-8504,CVE-2015-8558,CVE-2015-8567,CVE-2015-8568,CVE-2015-8613,CVE-2015-8619,CVE-2015-8743,CVE-2015-8744,CVE-2015-8745,CVE-2015-8817,CVE-2015-8818,CVE-2016-1568,CVE-2016-1714,CVE-2016-1922,CVE-2016-1981,CVE-2016-2197,CVE-2016-2198,CVE-2016-2538,CVE-2016-2841,CVE-2016-2857,CVE-2016-2858,CVE-2016-3710,CVE-2016-3712,CVE-2016-4001,CVE-2016-4002,CVE-2016-4020,CVE-2016-4037,CVE-2016-4439,CVE-2016-4441,CVE-2016-4952 Sources used: openSUSE Leap 42.1 (src): qemu-2.3.1-15.1, qemu-linux-user-2.3.1-15.1, qemu-testsuite-2.3.1-15.2
fixed