Race condition in QEMU - CVE-2018-19489
Published: November 22, 2018 / Updated: November 26, 2018
Vulnerability details
The vulnerability allows an adjacent attacker to cause DoS condition on the target system.
The vulnerability exists due to race condition while renaming files on a shared host directory. An adjacent attacker can use-after-free flaw in the VirtFS, host directory sharing via Plan 9 File System(9pfs) support and cause the service to crash.
Affected software
Opensuse