Bugzilla – Bug 998516
VUL-1: CVE-2016-7170: qemu: vmware_vga: OOB stack memory access when processing svga command
Last modified: 2017-05-08 14:40:18 UTC
rh#1374702 Quick Emulator(Qemu) built with the VMware-SVGA "chipset" emulation support is vulnerable to an OOB stack memory write issue. It could occur while processing VGA commands in 'vmsvga_fifo_run' routine. A privileged user inside guest could use this flaw to crash the Qemu process resulting in DoS. Upstream fix: ------------- -> https://lists.gnu.org/archive/html/qemu-devel/2016-09/msg01764.html References: https://bugzilla.redhat.com/show_bug.cgi?id=1374702 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-7170 http://seclists.org/oss-sec/2016/q3/468 http://people.canonical.com/~ubuntu-security/cve/2016/CVE-2016-7170.html
bugbot adjusting priority
SUSE-SU-2016:2879-1: An update that solves 21 vulnerabilities and has 6 fixes is now available. Category: security (moderate) Bug References: 1000345,1000346,1001151,1002116,1002549,1002550,1002557,1003612,1003613,1003878,1003893,1003894,1004702,1004706,1004707,1005353,1005374,1006536,1006538,1007263,1007391,1007493,1007494,1007495,1007769,1008148,998516 CVE References: CVE-2016-7161,CVE-2016-7170,CVE-2016-7422,CVE-2016-7466,CVE-2016-7907,CVE-2016-7908,CVE-2016-7909,CVE-2016-7994,CVE-2016-7995,CVE-2016-8576,CVE-2016-8577,CVE-2016-8578,CVE-2016-8667,CVE-2016-8668,CVE-2016-8669,CVE-2016-8909,CVE-2016-8910,CVE-2016-9101,CVE-2016-9104,CVE-2016-9105,CVE-2016-9106 Sources used: SUSE Linux Enterprise Server for Raspberry Pi 12-SP2 (src): qemu-2.6.2-31.2 SUSE Linux Enterprise Server 12-SP2 (src): qemu-2.6.2-31.2 SUSE Linux Enterprise Desktop 12-SP2 (src): qemu-2.6.2-31.2
SUSE-SU-2016:2902-1: An update that fixes 17 vulnerabilities is now available. Category: security (important) Bug References: 1001151,1002550,1002557,1003878,1003893,1003894,1004702,1004707,1006536,1006538,1007391,1007450,1007454,1007493,1007494,1007495,998516 CVE References: CVE-2016-7161,CVE-2016-7170,CVE-2016-7908,CVE-2016-7909,CVE-2016-8576,CVE-2016-8577,CVE-2016-8578,CVE-2016-8667,CVE-2016-8669,CVE-2016-8909,CVE-2016-8910,CVE-2016-9101,CVE-2016-9102,CVE-2016-9103,CVE-2016-9104,CVE-2016-9105,CVE-2016-9106 Sources used: SUSE Linux Enterprise Server 11-SP4 (src): kvm-1.4.2-50.1
SUSE-SU-2016:2936-1: An update that solves 18 vulnerabilities and has one errata is now available. Category: security (important) Bug References: 1001151,1002116,1002550,1002557,1003878,1003893,1003894,1004702,1004707,1006536,1006538,1007391,1007450,1007454,1007493,1007494,1007495,998516,999661 CVE References: CVE-2016-7161,CVE-2016-7170,CVE-2016-7421,CVE-2016-7908,CVE-2016-7909,CVE-2016-8576,CVE-2016-8577,CVE-2016-8578,CVE-2016-8667,CVE-2016-8669,CVE-2016-8909,CVE-2016-8910,CVE-2016-9101,CVE-2016-9102,CVE-2016-9103,CVE-2016-9104,CVE-2016-9105,CVE-2016-9106 Sources used: SUSE Linux Enterprise Server for SAP 12 (src): qemu-2.0.2-48.25.1 SUSE Linux Enterprise Server 12-LTSS (src): qemu-2.0.2-48.25.1
SUSE-SU-2016:2988-1: An update that solves 19 vulnerabilities and has two fixes is now available. Category: security (important) Bug References: 1000345,1001151,1002116,1002550,1002557,1003878,1003893,1003894,1004702,1004707,1006536,1006538,1007391,1007450,1007454,1007493,1007494,1007495,996524,998516,999661 CVE References: CVE-2016-7161,CVE-2016-7170,CVE-2016-7421,CVE-2016-7466,CVE-2016-7908,CVE-2016-7909,CVE-2016-8576,CVE-2016-8577,CVE-2016-8578,CVE-2016-8667,CVE-2016-8669,CVE-2016-8909,CVE-2016-8910,CVE-2016-9101,CVE-2016-9102,CVE-2016-9103,CVE-2016-9104,CVE-2016-9105,CVE-2016-9106 Sources used: SUSE Linux Enterprise Server 12-SP1 (src): qemu-2.3.1-24.6 SUSE Linux Enterprise Desktop 12-SP1 (src): qemu-2.3.1-24.6
openSUSE-SU-2016:3103-1: An update that solves 19 vulnerabilities and has two fixes is now available. Category: security (important) Bug References: 1000345,1001151,1002116,1002550,1002557,1003878,1003893,1003894,1004702,1004707,1006536,1006538,1007391,1007450,1007454,1007493,1007494,1007495,996524,998516,999661 CVE References: CVE-2016-7161,CVE-2016-7170,CVE-2016-7421,CVE-2016-7466,CVE-2016-7908,CVE-2016-7909,CVE-2016-8576,CVE-2016-8577,CVE-2016-8578,CVE-2016-8667,CVE-2016-8669,CVE-2016-8909,CVE-2016-8910,CVE-2016-9101,CVE-2016-9102,CVE-2016-9103,CVE-2016-9104,CVE-2016-9105,CVE-2016-9106 Sources used: openSUSE Leap 42.1 (src): qemu-2.3.1-22.1, qemu-linux-user-2.3.1-22.1, qemu-testsuite-2.3.1-22.2
openSUSE-SU-2016:3237-1: An update that solves 21 vulnerabilities and has 5 fixes is now available. Category: security (moderate) Bug References: 1000345,1000346,1001151,1002116,1002549,1002550,1002557,1003612,1003613,1003878,1003893,1003894,1004702,1004706,1004707,1005353,1005374,1006536,1006538,1007391,1007493,1007494,1007495,1007769,1008148,998516 CVE References: CVE-2016-7161,CVE-2016-7170,CVE-2016-7422,CVE-2016-7466,CVE-2016-7907,CVE-2016-7908,CVE-2016-7909,CVE-2016-7994,CVE-2016-7995,CVE-2016-8576,CVE-2016-8577,CVE-2016-8578,CVE-2016-8667,CVE-2016-8668,CVE-2016-8669,CVE-2016-8909,CVE-2016-8910,CVE-2016-9101,CVE-2016-9104,CVE-2016-9105,CVE-2016-9106 Sources used: openSUSE Leap 42.2 (src): qemu-2.6.2-23.1, qemu-linux-user-2.6.2-23.1, qemu-testsuite-2.6.2-23.1
This is an autogenerated message for OBS integration: This bug (998516) was mentioned in https://build.opensuse.org/request/show/458668 42.2 / virglrenderer
Fixed.