UbuntuUpdates.org

Bugs fixes in "qemu"

Origin Bug number Title Date fixed
CVE CVE-2020-13362 In QEMU 5.0.0 and earlier, megasas_lookup_frame in hw/scsi/megasas.c has an out-of-bounds read via a crafted reply_queue_head field from a guest OS u 2020-08-19
CVE CVE-2020-13361 In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trig 2020-08-19
CVE CVE-2020-13253 sd_wp_addr in hw/sd/sd.c in QEMU 4.2.0 uses an unvalidated address, which leads to an out-of-bounds read during sdhci_write() operations. A guest OS 2020-08-19
CVE CVE-2020-10761 An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-cli 2020-08-19
CVE CVE-2020-16092 In QEMU through 5.0.0, an assertion failure can occur in the network packet processing. This issue affects the e1000e and vmxnet3 network devices. A 2020-08-19
CVE CVE-2020-15863 hw/net/xgmac.c in the XGMAC Ethernet controller in QEMU before 07-20-2020 has a buffer overflow. This occurs during packet transmission and affects t 2020-08-19
CVE CVE-2020-14415 division by zero in oss_write() in audio/ossaudio.c 2020-08-19
CVE CVE-2020-13800 ati-vga in hw/display/ati.c in QEMU 4.2.0 allows guest OS users to trigger infinite recursion via a crafted mm_index value during an ati_mm_read or a 2020-08-19
CVE CVE-2020-13754 hw/pci/msix.c in QEMU 4.2.0 allows guest OS users to trigger an out-of-bounds access via a crafted address in an msi-x mmio operation. 2020-08-19
CVE CVE-2020-13659 address_space_map in exec.c in QEMU 4.2.0 can trigger a NULL pointer dereference related to BounceBuffer. 2020-08-19
CVE CVE-2020-13362 In QEMU 5.0.0 and earlier, megasas_lookup_frame in hw/scsi/megasas.c has an out-of-bounds read via a crafted reply_queue_head field from a guest OS u 2020-08-19
CVE CVE-2020-13361 In QEMU 5.0.0 and earlier, es1370_transfer_audio in hw/audio/es1370.c does not properly validate the frame count, which allows guest OS users to trig 2020-08-19
CVE CVE-2020-13253 sd_wp_addr in hw/sd/sd.c in QEMU 4.2.0 uses an unvalidated address, which leads to an out-of-bounds read during sdhci_write() operations. A guest OS 2020-08-19
CVE CVE-2020-10761 An assertion failure issue was found in the Network Block Device(NBD) Server in all QEMU versions before QEMU 5.0.1. This flaw occurs when an nbd-cli 2020-08-19
Launchpad 1887525 qemu vhost-user should ignore irrelevant mem regions because it has limit of 8 regions 2020-07-23
Launchpad 1887525 qemu vhost-user should ignore irrelevant mem regions because it has limit of 8 regions 2020-07-23
Launchpad 1887525 qemu vhost-user should ignore irrelevant mem regions because it has limit of 8 regions 2020-07-15
Launchpad 1887525 qemu vhost-user should ignore irrelevant mem regions because it has limit of 8 regions 2020-07-15
Launchpad 1882774 issues with secondary VMX execution controls 2020-07-06
Launchpad 1878973 clean focal install, crash report qemu-guest-agent 2020-07-06



About   -   Send Feedback to @ubuntu_updates