Quick Emulator (Qemu) Denial of Service (CVE-2017-18043) Vulnerability)
Quick Emulator (Qemu) Denial of Service (CVE-2017-18043) Vulnerability)
Release date:
Updated on:
Affected Systems:
QEMU
Description:
Bugtraq id: 102759
CVE (CAN) ID: CVE-2017-18043
QEMU is an open source simulator software.
Quick Emulator (Qemu) has the integer overflow vulnerability in macro ROUND_UP (n, d) Implementation, which allows remote attackers to exploit this vulnerability to cause DOS.
<* Source: Eric Blake (ebb9@byu.net)
*>
Suggestion:
Vendor patch:
QEMU
----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://seclists.org/oss-sec/2018/q1/73
Http://wiki.qemu.org/Main_Page
Https://bugzilla.redhat.com/show_bug.cgi? Id = 1536377
Https://access.redhat.com/security/cve/CVE-2017-18043
Https://git.qemu.org /? P = qemu. git; a = commit; h = 2098b073f398cd628c09c5a78537a6854