Wind River Support Network


LIN6-11495 : Security Advisory - qemu - CVE-2016-5238

Created: Jun 29, 2016    Updated: Dec 3, 2018
Resolved Date: Jul 10, 2016
Found In Version:
Fix Version:
Severity: Standard
Applicable for: Wind River Linux 6
Component/s: Userspace


The get_cmd function in hw/scsi/esp.c in QEMU might allow local guest OS administrators to cause a denial of service (out-of-bounds write and QEMU process crash) via vectors related to reading from the information transfer buffer in non-DMA mode.

Other Downloads

Live chat