Red Hat Security Advisory 2017-0083-01

Discussion in 'News Aggregator' started by Packet Storm, 18 Jan 2017.

  1. Packet Storm

    Packet Storm Guest

    Red Hat Security Advisory 2017-0083-01 - Kernel-based Virtual Machine is a full virtualization solution for Linux on AMD64 and Intel 64 systems. The qemu-kvm packages provide the user-space component for running virtual machines using KVM. Security Fix: An out-of-bounds read-access flaw was found in the QEMU emulator built with IP checksum routines. The flaw could occur when computing a TCP/UDP packet's checksum, because a QEMU function used the packet's payload length without checking against the data buffer's size. A user inside a guest could use this flaw to crash the QEMU process.

    Continue reading...
     

Share This Page

Loading...