DSA-3920-1 qemu -- qemuID: oval:org.secpod.oval:def:603026 | Date: (C)2017-07-31 (M)2024-01-02 |
Class: PATCH | Family: unix |
Multiple vulnerabilities were found in in qemu, a fast processor emulator: CVE-2017-9310 Denial of service via infinite loop in e1000e NIC emulation. CVE-2017-9330 Denial of service via infinite loop in USB OHCI emulation. CVE-2017-9373 Denial of service via memory leak in IDE AHCI emulation. CVE-2017-9374 Denial of service via memory leak in USB EHCI emulation. CVE-2017-9375 Denial of service via memory leak in USB XHCI emulation. CVE-2017-9524 Denial of service in qemu-nbd server. CVE-2017-10664 Denial of service in qemu-nbd server. CVE-2017-10911 Information leak in Xen blkif response handling.