The dhcp_decode function in slirp/bootp.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) via a crafted DHCP options string.
CPE | Name | Operator | Version |
---|---|---|---|
debian_linux | eq | 8.0 | |
debian_linux | eq | 9.0 | |
qemu | le | 2.9.1 | |
qemu | eq | 2.10.0 rc0 | |
qemu | eq | 2.10.0 rc1 | |
qemu | eq | 2.10.0 rc2 | |
qemu | eq | 2.10.0 rc3 |