Lucene search

K
redhatRedHatRHSA-2017:2628
HistorySep 05, 2017 - 11:38 a.m.

(RHSA-2017:2628) Moderate: qemu-kvm-rhev security and bug fix update

2017-09-0511:38:23
access.redhat.com
46

0.061 Low

EPSS

Percentile

93.6%

KVM (Kernel-based Virtual Machine) is a full virtualization solution for Linux on a variety of architectures. The qemu-kvm-rhev packages provide the user-space component for running virtual machines that use KVM in environments managed by Red Hat products.

Security Fix(es):

  • An assertion-failure flaw was found in the Network Block Device (NBD) server’s initial connection negotiation, where the I/O co-routine was undefined. This could crash the qemu-nbd server if a client sent unexpected data during connection negotiation. A remote user or process could use this flaw to crash the qemu-nbd server resulting in denial of service. (CVE-2017-7539)

0.061 Low

EPSS

Percentile

93.6%