[Bug 1023053] New: VUL-0: kvm: qemu: scsi: megasas: host memory leakage in megasas_handle_dcmd
http://bugzilla.opensuse.org/show_bug.cgi?id=1023053 Bug ID: 1023053 Summary: VUL-0: kvm: qemu: scsi: megasas: host memory leakage in megasas_handle_dcmd Classification: openSUSE Product: openSUSE Distribution Version: Leap 42.2 Hardware: Other OS: Other Status: NEW Severity: Normal Priority: P5 - None Component: Security Assignee: security-team@suse.de Reporter: mikhail.kasimov@gmail.com QA Contact: qa-bugs@suse.de Found By: --- Blocker: --- Ref: http://seclists.org/oss-sec/2017/q1/270 ================================================ Hello, Quick Emulator(Qemu) built with the MegaRAID SAS 8708EM2 Host Bus Adapter emulation support is vulnerable to a memory leakage issue. It could occur while processing MegaRAID Firmware Interface(MFI) command in 'megasas_handle_dcmd' routine. A privileged user inside guest could use this flaw to leak host memory resulting DoS issue. Upstream patch: --------------- -> http://git.qemu.org/?p=qemu.git;a=commit;h=765a707000e838c30b18d712fe6cb3dd8... Reference: ---------- -> https://bugzilla.redhat.com/show_bug.cgi?id=1418342 This issue was reported by Mr Li Qiang of 360.cn Inc. Thank you. -- Prasad J Pandit / Red Hat Product Security Team 47AF CE69 3A90 54AA 9045 1053 DD13 3D32 FE5B 041F ================================================ -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=1023053 Mikhail Kasimov <mikhail.kasimov@gmail.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Summary|VUL-0: kvm: qemu: scsi: |VUL-0: CVE-2017-5856: kvm: |megasas: host memory |qemu: scsi: megasas: host |leakage in |memory leakage in |megasas_handle_dcmd |megasas_handle_dcmd Alias| |CVE-2017-5856 -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@novell.com