2.1 Low
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:L/AC:L/Au:N/C:N/I:N/A:P
0.0004 Low
EPSS
Percentile
9.9%
QEMU 0.8.2 allows local users to crash a virtual machine via the divisor
operand to the aam instruction, as demonstrated by “aam 0x0,” which
triggers a divide-by-zero error.
Author | Note |
---|---|
jdstrand | kvm contains qemu (0.9.1 on hardy) |
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
ubuntu | 8.04 | noarch | kvm | < 1:62+dfsg-0ubuntu3 | UNKNOWN |
ubuntu | 8.10 | noarch | kvm | < 1:62+dfsg-0ubuntu3 | UNKNOWN |
ubuntu | 9.04 | noarch | kvm | < 1:62+dfsg-0ubuntu3 | UNKNOWN |
ubuntu | 7.10 | noarch | qemu | < 0.9.0-2 | UNKNOWN |
ubuntu | 8.04 | noarch | qemu | < 0.9.0-2 | UNKNOWN |
ubuntu | 8.10 | noarch | qemu | < 0.9.0-2 | UNKNOWN |
ubuntu | 9.04 | noarch | qemu | < 0.9.0-2 | UNKNOWN |
ubuntu | 9.10 | noarch | qemu-kvm | < 0.9.0-2 | UNKNOWN |