Red Hat Security Advisory 2016-0725-01

Discussion in 'News Aggregator' started by Packet Storm, 10 May 2016.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2016-0725-01 - KVM is a full virtualization solution for Linux on AMD64 and Intel 64 systems. The qemu-kvm-rhev package provides the user-space component for running virtual machines using KVM in environments managed by Red Hat Enterprise Virtualization Manager. Security Fix: An out-of-bounds read/write access flaw was found in the way QEMU's VGA emulation with VESA BIOS Extensions support performed read/write operations via I/O port methods. A privileged guest user could use this flaw to execute arbitrary code on the host with the privileges of the host's QEMU process.

    Continue reading...
     

Share This Page

Loading...