Back to search
CVE-2016-9914
Published: Dec 29, 2016
Modified: Aug 6, 2024
PUBLISHED
Description
Memory leak in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local privileged guest OS users to cause a denial of service (host memory consumption and possibly QEMU process crash) by leveraging a missing cleanup operation in FileOperations.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[debian-lts-announce] 20180906 [SECURITY] [DLA 1497-1] qemu security update
mailing-list
x_refsource_MLIST
94729
vdb-entry
x_refsource_BID
[qemu-devel] 20161116 [PATCH v3 0/4] 9pfs: add cleanup operation in handle/proxy backend
mailing-list
x_refsource_MLIST
GLSA-201701-49
vendor-advisory
x_refsource_GENTOO
[oss-security] 20161207 CVE request Qemu: 9pfs: memory leakage via proxy/handle callbacks
mailing-list
x_refsource_MLIST
[oss-security] 20161208 Re: CVE request Qemu: 9pfs: memory leakage via proxy/handle callbacks
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now