Red Hat Security Advisory 2016-1585-01

Discussion in 'News Aggregator' started by Packet Storm, 11 Aug 2016.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2016-1585-01 - KVM is a full virtualization solution for Linux on AMD64 and Intel 64 systems. The qemu-kvm packages provide the user-space component for running virtual machines using KVM. Security Fix: Quick emulator built with the virtio framework is vulnerable to an unbounded memory allocation issue. It was found that a malicious guest user could submit more requests than the virtqueue size permits. Processing a request allocates a VirtQueueElement and therefore causes unbounded memory allocation on the host controlled by the guest.

    Continue reading...
     

Share This Page

Loading...