Medium severity6.5NVD Advisory· Published Dec 29, 2016· Updated May 6, 2026
CVE-2016-9913
CVE-2016-9913
Description
Memory leak in the v9fs_device_unrealize_common function in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allows local privileged guest OS users to cause a denial of service (host memory consumption and possibly QEMU process crash) via vectors involving the order of resource cleanup.
Affected products
3Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- lists.gnu.org/archive/html/qemu-devel/2016-11/msg03278.htmlnvdPatchVendor Advisory
- www.openwall.com/lists/oss-security/2016/12/06/11nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2016/12/08/7nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/94729nvdThird Party AdvisoryVDB Entry
- security.gentoo.org/glsa/201701-49nvdThird Party Advisory
News mentions
0No linked articles in our index yet.