The slirp_smb function in net/slirp.c in QEMU 2.3.0 and earlier creates temporary files with predictable names, which allows local users to cause a denial of service (instantiation failure) by creating /tmp/qemu-smb.*-* files before the program.
References
Configurations
Information
Published : 2015-08-26 12:59
Updated : 2016-12-23 18:59
NVD link : CVE-2015-4037
Mitre link : CVE-2015-4037
JSON object : View
CWE
CWE-17
DEPRECATED: Code
Products Affected
qemu
- qemu