Resource exhaustion in QEMU - CVE-2016-9912
Published: December 24, 2016 / Updated: August 9, 2020
QEMU
Detailed vulnerability description
The vulnerability allows a local authenticated user to a crash the entire system.
Quick Emulator (Qemu) built with the Virtio GPU Device emulator support is vulnerable to a memory leakage issue. It could occur while destroying gpu resource object in 'virtio_gpu_resource_destroy'. A guest user/process could use this flaw to leak host memory bytes, resulting in DoS for a host.