Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 382405 (CVE-2011-3346) - <app-emulation/qemu-0.15.1: Denial of Service Weakness (CVE-2011-3346)
Summary: <app-emulation/qemu-0.15.1: Denial of Service Weakness (CVE-2011-3346)
Status: RESOLVED FIXED
Alias: CVE-2011-3346
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal minor (vote)
Assignee: Gentoo Security
URL: https://secunia.com/advisories/45886/
Whiteboard: B3 [noglsa]
Keywords:
Depends on:
Blocks:
 
Reported: 2011-09-09 14:54 UTC by Agostino Sarubbo
Modified: 2013-08-30 06:42 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Agostino Sarubbo gentoo-dev 2011-09-09 14:54:55 UTC
From secunia security advisor at $URL:

Description:
The weakness is caused due to a boundary error within the "scsi_disk_emulate_command()" function (hw/scsi-disk.c) of the SCSI subsystem and can be exploited to cause a buffer overflow and crash a guest by e.g. sending a specially crafted "READ CAPACITY" command.
Comment 1 Doug Goldstein (RETIRED) gentoo-dev 2012-10-20 17:04:49 UTC
Looks like this never affected a qemu 1.0 or newer release which we've had stable for some time.
Comment 2 Doug Goldstein (RETIRED) gentoo-dev 2012-12-08 06:12:24 UTC
This does affect current app-emulation/qemu-user ebuilds that are available in the tree however.
Comment 3 Sean Amoss (RETIRED) gentoo-dev Security 2013-04-19 19:21:17 UTC
(In reply to comment #2)
> This does affect current app-emulation/qemu-user ebuilds that are available
> in the tree however.

Does this issue still affect current ebuilds?
Comment 4 Sergey Popov gentoo-dev 2013-08-12 12:57:52 UTC
app-emulation/qemu-user does not build any of system emulators target, thus this bug is not related to it.
Comment 5 Chris Reffett (RETIRED) gentoo-dev Security 2013-08-30 00:38:35 UTC
GLSA vote: no (ancient version of qemu and doesn't affect qemu-user)
Comment 6 Sergey Popov gentoo-dev 2013-08-30 06:42:40 UTC
GLSA vote: no

Closing as noglsa