CVE-2014-9718
Publication date 21 April 2015
Last updated 24 July 2024
Ubuntu priority
The (1) BMDMA and (2) AHCI HBA interfaces in the IDE functionality in QEMU 1.0 through 2.1.3 have multiple interpretations of a function's return value, which allows guest OS users to cause a host OS denial of service (memory consumption or infinite loop, and system crash) via a PRDT with zero complete sectors, related to the bmdma_prepare_buf and ahci_dma_prepare_buf functions.
Status
Package | Ubuntu Release | Status |
---|---|---|
qemu | ||
14.04 LTS trusty |
Fixed 2.0.0+dfsg-2ubuntu1.17
|
|
qemu-kvm | ||
14.04 LTS trusty | Not in release | |
Patch details
Package | Patch details |
---|---|
qemu |
References
Related Ubuntu Security Notices (USN)
- USN-2724-1
- QEMU vulnerabilities
- 27 August 2015