Buffer overflow in QEMU - CVE-2019-6501

 

Buffer overflow in QEMU - CVE-2019-6501

Published: April 15, 2019


Vulnerability identifier: #VU18274
CSH Severity: Low
CVSS v4: 4.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2019-6501
CWE-ID: CWE-119
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local user to perform denial of service attack.

The vulnerability exists due to a boundary error within the scsi_handle_inquiry_reply in hw/scsi/scsi-generic.c. A local user can create a specially crafted application, trigger buffer overflow and crash the affected emulator.


Affected software

QEMU
Red Hat Virtualization Manager
Red Hat Virtualization
Red Hat Virtualization for IBM Power LE
Red Hat Enterprise Linux for IBM z Systems
Red Hat OpenStack
Red Hat OpenStack for IBM Power
qemu-kvm-rhev (Red Hat package)

How to mitigate CVE-2019-6501

Install update from vendor's website.

qemu-kvm-rhev (Red Hat package) - update to 2.12.0-33.el7

External References

Related Security Bulletins