CVE-2017-15289
CVE-2017-15289
The mode4and5 write functions in hw/display/cirrus_vga.c in Qemu allow local OS guest privileged users to cause a denial of service (out-of-bounds write access and Qemu process crash) via vectors related to dst calculation.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://access.redhat.com/errata/RHSA-2017:3368https://access.redhat.com/errata/RHSA-2017:3369https://access.redhat.com/errata/RHSA-2017:3466https://access.redhat.com/errata/RHSA-2017:3470https://access.redhat.com/errata/RHSA-2017:3471https://access.redhat.com/errata/RHSA-2017:3472https://access.redhat.com/errata/RHSA-2017:3473https://access.redhat.com/errata/RHSA-2017:3474https://access.redhat.com/errata/RHSA-2018:0516https://bugzilla.redhat.com/show_bug.cgi?id=1501290https://lists.debian.org/debian-lts-announce/2018/09/msg00007.htmlhttps://lists.gnu.org/archive/html/qemu-devel/2017-10/msg02557.html