Lucene search

K
mageiaGentoo FoundationMGASA-2014-0060
HistoryFeb 12, 2014 - 9:15 p.m.

Updated qemu package fixes security vulnerability

2014-02-1221:15:52
Gentoo Foundation
advisories.mageia.org
8

2.3 Low

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:A/AC:M/Au:S/C:N/I:N/A:P

0.0004 Low

EPSS

Percentile

5.1%

Sibiao Luo discovered that QEMU incorrectly handled device hot-unplugging. A local user could possibly use this flaw to cause a denial of service (CVE-2013-4377). Additionally, qemu has been updated to 1.6.2, fixing several other bugs.

OSVersionArchitecturePackageVersionFilename
Mageia4noarchqemu< 1.6.2-1qemu-1.6.2-1.mga4

2.3 Low

CVSS2

Attack Vector

ADJACENT_NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:A/AC:M/Au:S/C:N/I:N/A:P

0.0004 Low

EPSS

Percentile

5.1%