Resource exhaustion in Xen - CVE-2016-5403

 

Resource exhaustion in Xen - CVE-2016-5403

Published: August 2, 2016 / Updated: July 28, 2020


Vulnerability identifier: #VU32259
CSH Severity: Low
CVSS v4: 6.8 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2016-5403
CWE-ID: CWE-400
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local authenticated user to perform a denial of service (DoS) attack.

The virtqueue_pop function in hw/virtio/virtio.c in QEMU allows local guest OS administrators to cause a denial of service (memory consumption and QEMU process crash) by submitting requests without waiting for completion.


Affected software

Xen
xen (Alpine package)
qemu-kvm-rhev (Red Hat package)
qemu-kvm (Red Hat package)
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Server

How to mitigate CVE-2016-5403

Install update from vendor's website.

xen (Alpine package) - addressed in versions 4.4.4-r0, 4.5.3-r0, 4.6.3-r1
qemu-kvm-rhev (Red Hat package) - update to 0.12.1.2-2.491.el6_8.3
qemu-kvm (Red Hat package) - update to 0.12.1.2-2.491.el6_8.3

External References

Related Security Bulletins