CVE-2016-9846

QEMU (aka Quick Emulator) built with the Virtio GPU Device emulator support is vulnerable to a memory leakage issue. It could occur while updating the cursor data in update_cursor_data_virgl. A guest user/process could use this flaw to leak host memory bytes, resulting in DoS for a host.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:qemu:qemu:*:*:*:*:*:*:*:*
cpe:2.3:a:qemu:qemu:2.8.0:rc0:*:*:*:*:*:*
cpe:2.3:a:qemu:qemu:2.8.0:rc1:*:*:*:*:*:*
cpe:2.3:a:qemu:qemu:2.8.0:rc2:*:*:*:*:*:*

Information

Published : 2016-12-29 14:59

Updated : 2020-11-10 10:54


NVD link : CVE-2016-9846

Mitre link : CVE-2016-9846


JSON object : View

CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer

Advertisement

dedicated server usa

Products Affected

qemu

  • qemu