Wind River Support Network

HomeDefectsLIN6-5190
Fixed

LIN6-5190 : Security Advisory - qemu - CVE-2013-4377

Created: Nov 3, 2013    Updated: Dec 3, 2018
Resolved Date: Dec 8, 2014
Previous ID: LIN3-16790
Found In Version: 6.0
Fix Version: 6.0.0.15
Severity: Low
Applicable for: Wind River Linux 6
Component/s: Userspace

Description

Use-after-free vulnerability in the virtio-pci implementation in Qemu 1.4.0 through 1.6.0 allows local users to cause a denial of service (daemon crash) by hot-unplugging a virtio device.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-4377

Workaround

Unknown

Steps to Reproduce

Unknown

Other Downloads


Live chat
Online