ALAS-2020-1449 ---- qemu-kvm, qemu-imgID: oval:org.secpod.oval:def:1601209 | Date: (C)2020-11-19 (M)2024-01-29 |
Class: PATCH | Family: unix |
qemu-seccomp.c in QEMU might allow local OS guest users to cause a denial of service by leveraging mishandling of the seccomp policy for threads other than the main thread. A heap buffer overflow issue was found in the SLiRP networking implementation of the QEMU emulator. This flaw occurs in the ip_reass routine while reassembling incoming packets if the first fragment is bigger than the m-
Platform: |
Amazon Linux AMI |