Red Hat Security Advisory 2015-2695-01

Discussion in 'News Aggregator' started by Packet Storm, 23 Dec 2015.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2015-2695-01 - KVM is a full virtualization solution for Linux on AMD64 and Intel 64 systems. The qemu-kvm-rhev package provides the user-space component for running virtual machines using KVM. A heap-based buffer overflow flaw was discovered in the way QEMU's AMD PC-Net II Ethernet Controller emulation received certain packets in loopback mode. A privileged user inside a guest could use this flaw to crash the host QEMU process or, potentially, execute arbitrary code with privileges of the host QEMU process.

    Continue reading...
     

Share This Page

Loading...