Lucene search

K
redhatRedHatRHSA-2017:1681
HistoryJul 05, 2017 - 7:04 a.m.

(RHSA-2017:1681) Important: qemu-kvm security update

2017-07-0507:04:58
access.redhat.com
58

EPSS

0.04

Percentile

92.1%

Kernel-based Virtual Machine (KVM) is a full virtualization solution for Linux on a variety of architectures. The qemu-kvm package provides the user-space component for running virtual machines that use KVM.

Security Fix(es):

  • Quick Emulator (QEMU) built with Network Block Device (NBD) Server support was vulnerable to a null-pointer dereference issue. The flaw could occur when releasing a client, which was not initialized due to failed negotiation. A remote user or process could exploit this flaw to crash the qemu-nbd server (denial of service). (CVE-2017-9524)