VYPR

rpm package

suse/xen&distro=SUSE Linux Enterprise Software Development Kit 11 SP4

pkg:rpm/suse/xen&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4

Vulnerabilities (201)

  • CVE-2016-1981MedDec 29, 2016
    affected < 4.4.4_02-32.1fixed 4.4.4_02-32.1

    QEMU (aka Quick Emulator) built with the e1000 NIC emulation support is vulnerable to an infinite loop issue. It could occur while processing data via transmit or receive descriptors, provided the initial receive/transmit descriptor head (TDH/RDH) is set outside the allocated des

  • CVE-2016-1922MedDec 29, 2016
    affected < 4.4.4_02-32.1fixed 4.4.4_02-32.1

    QEMU (aka Quick Emulator) built with the TPR optimization for 32-bit Windows guests support is vulnerable to a null pointer dereference flaw. It occurs while doing I/O port write operations via hmp interface. In that, 'current_cpu' remains null, which leads to the null pointer de

  • CVE-2015-8818MedDec 29, 2016
    affected < 4.4.4_02-32.1fixed 4.4.4_02-32.1

    The cpu_physical_memory_write_rom_internal function in exec.c in QEMU (aka Quick Emulator) does not properly skip MMIO regions, which allows local privileged guest users to cause a denial of service (guest crash) via unspecified vectors.

  • CVE-2015-8817MedDec 29, 2016
    affected < 4.4.4_02-32.1fixed 4.4.4_02-32.1

    QEMU (aka Quick Emulator) built to use 'address_space_translate' to map an address to a MemoryRegionSection is vulnerable to an OOB r/w access issue. It could occur while doing pci_dma_read/write calls. Affects QEMU versions >= 1.6.0 and <= 2.3.1. A privileged user inside guest c

  • CVE-2015-8745MedDec 29, 2016
    affected < 4.4.4_02-32.1fixed 4.4.4_02-32.1

    QEMU (aka Quick Emulator) built with a VMWARE VMXNET3 paravirtual NIC emulator support is vulnerable to crash issue. It could occur while reading Interrupt Mask Registers (IMR). A privileged (CAP_SYS_RAWIO) guest user could use this flaw to crash the QEMU process instance resulti

  • CVE-2015-8744MedDec 29, 2016
    affected < 4.4.4_02-32.1fixed 4.4.4_02-32.1

    QEMU (aka Quick Emulator) built with a VMWARE VMXNET3 paravirtual NIC emulator support is vulnerable to crash issue. It occurs when a guest sends a Layer-2 packet smaller than 22 bytes. A privileged (CAP_SYS_RAWIO) guest user could use this flaw to crash the QEMU process instance

  • CVE-2015-8743HigDec 29, 2016
    affected < 4.4.4_02-32.1fixed 4.4.4_02-32.1

    QEMU (aka Quick Emulator) built with the NE2000 device emulation support is vulnerable to an OOB r/w access issue. It could occur while performing 'ioport' r/w operations. A privileged (CAP_SYS_RAWIO) user/process could use this flaw to leak or corrupt QEMU memory bytes.

  • CVE-2016-9921MedDec 23, 2016
    affected < 4.4.4_14-51.1fixed 4.4.4_14-51.1

    Quick emulator (Qemu) built with the Cirrus CLGD 54xx VGA Emulator support is vulnerable to a divide by zero issue. It could occur while copying VGA data when cirrus graphics mode was set to be VGA. A privileged user inside guest could use this flaw to crash the Qemu process inst

  • CVE-2016-9911MedDec 23, 2016
    affected < 4.4.4_14-51.1fixed 4.4.4_14-51.1

    Quick Emulator (Qemu) built with the USB EHCI Emulation support is vulnerable to a memory leakage issue. It could occur while processing packet data in 'ehci_init_transfer'. A guest user/process could use this issue to leak host memory, resulting in DoS for a host.

  • CVE-2016-9907MedDec 23, 2016
    affected < 4.4.4_14-51.1fixed 4.4.4_14-51.1

    Quick Emulator (Qemu) built with the USB redirector usb-guest support is vulnerable to a memory leakage flaw. It could occur while destroying the USB redirector in 'usbredir_handle_destroy'. A guest user/process could use this issue to leak host memory, resulting in DoS for a hos

  • CVE-2016-6888MedDec 10, 2016
    affected < 4.4.4_08-40.2fixed 4.4.4_08-40.2

    Integer overflow in the net_tx_pkt_init function in hw/net/net_tx_pkt.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (QEMU process crash) via the maximum fragmentation count, which triggers an unchecked multiplication and NULL poi

  • CVE-2016-6836MedDec 10, 2016
    affected < 4.4.4_08-40.2fixed 4.4.4_08-40.2

    The vmxnet3_complete_packet function in hw/net/vmxnet3.c in QEMU (aka Quick Emulator) allows local guest OS administrators to obtain sensitive host memory information by leveraging failure to initialize the txcq_descr object.

  • CVE-2016-6835MedDec 10, 2016
    affected < 4.4.4_08-40.2fixed 4.4.4_08-40.2

    The vmxnet_tx_pkt_parse_headers function in hw/net/vmxnet_tx_pkt.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (buffer over-read) by leveraging failure to check IP header length.

  • CVE-2016-6834MedDec 10, 2016
    affected < 4.4.4_08-40.2fixed 4.4.4_08-40.2

    The net_tx_pkt_do_sw_fragmentation function in hw/net/net_tx_pkt.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and QEMU process crash) via a zero length for the current fragment length.

  • CVE-2016-6833MedDec 10, 2016
    affected < 4.4.4_08-40.2fixed 4.4.4_08-40.2

    Use-after-free vulnerability in the vmxnet3_io_bar0_write function in hw/net/vmxnet3.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (QEMU instance crash) by leveraging failure to check if the device is active.

  • CVE-2016-9101MedDec 9, 2016
    affected < 4.4.4_14-51.1fixed 4.4.4_14-51.1

    Memory leak in hw/net/eepro100.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption and QEMU process crash) by repeatedly unplugging an i8255x (PRO100) NIC device.

  • CVE-2016-8910MedNov 4, 2016
    affected < 4.4.4_10-43.5fixed 4.4.4_10-43.5

    The rtl8139_cplus_transmit function in hw/net/rtl8139.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) by leveraging failure to limit the ring descriptor count.

  • CVE-2016-8909MedNov 4, 2016
    affected < 4.4.4_10-43.5fixed 4.4.4_10-43.5

    The intel_hda_xfer function in hw/audio/intel-hda.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (infinite loop and CPU consumption) via an entry with the same value for buffer length and pointer position.

  • CVE-2016-8669MedNov 4, 2016
    affected < 4.4.4_10-43.5fixed 4.4.4_10-43.5

    The serial_update_parameters function in hw/char/serial.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (divide-by-zero error and QEMU process crash) via vectors involving a value of divider greater than baud base.

  • CVE-2016-8667MedNov 4, 2016
    affected < 4.4.4_10-43.5fixed 4.4.4_10-43.5

    The rc4030_write function in hw/dma/rc4030.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (divide-by-zero error and QEMU process crash) via a large interval timer reload value.

Page 6 of 11